DANGEROUS

Phishing site — do not log in

Flagged on major browser safety blocklists as social engineering. This page looks designed to steal credentials. Don't log in — and if you already did, change the password anywhere you reused it and turn on two-factor authentication.

Security Review

Is dpd.yfnazmv.cfd legit or a scam?

Our verdict:Dangerous· 1/100

Brand new 2-day-old phishing site flagged by Google browser blocklist feeds for phishing and browser blocklists for social engineering, with a 404 error page.

dpd.yfnazmv.cfdScanned 43d ago
0
Trust score
DANGEROUS
Heuristics 0·MT 10
Category tags
phishing#Phishing95% MT confidence

These checks passed — but they don't clear the site. A clean antivirus result, valid SSL, and a calm server only mean it isn't hosting malware; they say nothing about whether the business is real. This verdict is based on the site's conduct and content, not a malware detection.

View density

Analysis Summary

Threat Intelligence
0/91
Engines flagged this URL
Domain Age
2 days old
Registered Apr 21, 2026
MT Intelligence
Dangerous
Critical likelihood · 95% confidence

MT Intelligence

Advanced threat intelligence
MT Security Analyst
Critical scam likelihoodengineMT · Guardiantrust10/100
MT AgentLive web researchVisual inspection
0%
Confidence
The site appears to mimic a DPD delivery service on a nonsense subdomain with a shady .cfd TLD. Google browser blocklist feeds flags it as phishing, Gridinsoft as a scam site, and our blocklists tag it for social engineering. Created just 2 days ago with no traffic or history, it returns a 404 error showing it's not a real business. A scam report confirms the risks from its youth and heuristics. No positive signals outweigh these red flags.
Full dossier
Analysis complete

Page Content

  • Page returns a 404 error, suggesting it's not fully built or intentionally minimal.
  • No functional content loads, common for fresh phishing setups.

Infrastructure

  • Hosted on IP 43.131.41.141 in Germany by Tencent, with clean abuse score but tied to new domain.
  • Valid Let's Encrypt SSL expiring in 87 days.
  • No redirects or homoglyph tricks detected.

Domain History

  • Registered 2 days ago via Dynadot LLC, privacy off, .cfd TLD often abused.
  • Not indexed in global traffic rankings.

Web Reputation

  • 2/91 antivirus engines flag malicious (Google browser blocklist feeds phishing, Gridinsoft phishing), 1 suspicious (LevelBlue).
  • One scam report labels it a scam site due to age and heuristics.
  • No positive reviews or business records found.
Risk Factors
6
  • Domain only 2 days old, created April 21, 2026 — too new for legitimate use.
  • Google browser blocklist feeds flags as phishing; Gridinsoft as scam site.
  • Browser blocklists flag for social engineering.
  • Returns 404 error, indicating incomplete or deceptive setup.
  • No business registration or history found.
  • Gridinsoft gives 1/100 trust score based on youth and heuristics.
Positive Signals
3
  • Sandbox analysis gave clean score of 0.
  • Hosting IP has 0 abuse reports and clean reputation.
  • Valid SSL certificate from Let's Encrypt.
AI Recommendation
Do not visit or interact with this site — it's a clear phishing risk. Use official DPD channels for any delivery needs and report it to your browser or antivirus.
Next-gen fraud intelligence
Evidence-backedCross-checked

Website Preview

Screenshot of dpd.yfnazmv.cfd
LIVE RENDER
dpd.yfnazmv.cfd

Automated page render — captured in a safe sandbox. What an ordinary visitor would see when loading the site.

Web Research Findings

Our live research agent queries scam-report databases, consumer-review sites, news coverage, and general web search for dpd.yfnazmv.cfd, then cross-checks business-registration records and look-alike domain patterns. Everything below is pulled from what it actually found.

Domain age
2 days
Registered Apr 2026
Business registration
No public record found
Could not match the site to a registered company — common for small sites.
Clone check
Not a clone
No well-known site's layout or branding detected here.
Typosquat check
No look-alike match
The domain doesn't resemble any well-known brand's spelling.
Web mentions
1 scam report
Key findings
6 headline facts from open-web research
  • Domain age: 2 days, created April 21, 2026.
  • Gridinsoft classifies as Scam Website with 1/100 trust score due to young age, no history, heuristic signals.
  • IP: 43.131.41.141, hosted by Tencent (AS132203) in Frankfurt, Germany.
  • Registrar: Dynadot LLC; TLD: .cfd; Status: Server/Client Transfer Prohibited.
  • Website returns 404 error.
  • No detections on PhishTank, Spamhaus, Scamadviser, Trustpilot, Reddit.
Scam reports (1)
Direct quotes from public scam databases, forums, and news.
  • Gridinsoftopen

    "Scam Website This site is classified as Scam Website based on multiple risk signals, including a very young domain (2 days), no established public user-review history, and heuristic security signals."

Research summary
Narrative write-up from our AI analyst, grounded on the facts above
Our web research found one scam report from Gridinsoft classifying the site as a scam due to its 2-day age, no user reviews, and security heuristics. No positive reviews, complaints, business registrations, or clone evidence turned up. For such a new site, the lack of broader reports is typical but doesn't build trust.

Antivirus Engines

Detection matrix · live
3 engines flagged this URL

We cross-check every URL against our antivirus network of 91 malware and blacklist engines. Each detection is listed below by engine name — even a single hit is a meaningful signal.

2Malicious1Suspicious54Harmless91Engines
0
of 91
Google Safebrowsing
Malicious· phishing
Gridinsoft
Malicious· phishing
LevelBlue
Suspicious· suspicious

3 antivirus engines flagged this URL. Even a single detection is a meaningful signal — treat this site with extra caution and avoid entering credentials, payment info, or downloading any files.

Security Scans

Blacklist Check
This URL appears on threat lists

Detected threat categories: SOCIAL_ENGINEERING.

Sandbox Render
Page rendered in a safe sandbox
Requests made0
Unique IPs0
Countries1
Detected brandsNone

Domain & Encryption

Domain History
Age2 days old
RegistrarDynadot LLC
RegisteredApr 21, 2026
ExpiresApr 21, 2027
Owner privacyVisible
Encryption Certificate
StatusValid
ProtocolTLSv1.3
IssuerLet's Encrypt · R12
ExpiresJul 20, 2026 (87d)
Self-signedNo
Hosting & Technology
HostingAsia Pacific Network Information Center, Pty. Ltd.
Server locationDE

Server Reputation

Hosting
CountryGermany
NetworkTENCENT-NET-AP-CN Tencent Building, Kejizhongyi Avenue, CN
IP address43.131.41.141
Abuse Intelligence
Confidence score0%
Reports on file0
ISPAsia Pacific Network Information Center, Pty. Ltd.
Usage typeData Center/Web Hosting/Transit

Scam-Type Likelihood

1 scam-type patterns detected
Scam-Type Likelihood

0 of 13 categories showed signals

We check every URL against 13 distinct scam categories so the verdict tells you not just how risky the page is, but what kind of risk it carries. Each meter pulls from page signals, web reports, our AI analyst, vision, and the scam-network cluster — not from raw AV labels.

Top match: Phishing
Phishing
Moderate likelihood
0/100
  • Google Safe Browsing flagged this as social engineering / phishing.
  • AI analyst tagged this as phishing.

Phishing site — act fast

This page shows signs of attempting to steal credentials or impersonate a trusted brand.

  • Do not interact with dpd.yfnazmv.cfd

    Do not enter credentials, deposit money, download files, or install browser extensions from this site.

  • If you already typed your password — change it now

    Change the password on the legitimate site and anywhere else you re-used it. Turn on two-factor authentication. Review recent account activity.

  • Report the phishing URL

    APWG (Anti-Phishing Working Group) accepts phishing reports at reportphishing@apwg.org. Google Safe Browsing reports help protect other users.

    Open
  • Get help on the forum

    MalwareTips members can help you assess damage and next steps.

    Open

Reputation Sources

How this domain rates across independent threat-intelligence and blocklist providers.

Google Safe Browsing
ListedCheck ↗
VirusTotal
ListedCheck ↗
AbuseIPDB
Not listedCheck ↗

Safety FAQ

Common questions about this site, answered from the scan data on this page. These are auto-generated — not hand-written — so they always match the underlying report.

  • Our automated security review flags dpd.yfnazmv.cfd as dangerous. Multiple threat indicators were detected — treat the site as a scam until proven otherwise.

Final Verdict

0
Trust / 100
Final Verdict·dpd.yfnazmv.cfd
DANGEROUS

This is a brand new phishing site on a suspicious .cfd domain flagged by Google browser blocklist feeds and our blocklists for social engineering. It returns a 404 error and has a scam report due to its extreme youth and no history. Avoid it completely.

Do not visit or interact with this site — it's a clear phishing risk. Use official DPD channels for any delivery needs and report it to your browser or antivirus.

AV engines
91
MT passes
2
Net signals
1
Scan another URL
Security review completemalwaretips.com/url-scan
Recently scanned

Other Dangerous reports

Browse all reports
Community review

User reviews & comments(0)

Share your experience — "Lost $200 on a fake checkout" is more useful than "Scam". Your review helps others avoid traps.

Loading…
Loading comments…
Scanned by
JackStaff
This report is generated automatically by combining threat intelligence, domain signals, and an AI security analyst. It is informational, not legal advice. Always use your own judgement before sharing personal information or money online.