Lookalike Domain Analysis

Detailed risk assessment for visa.by

Back to Report
Domain Information
TAKEN DOWN
No Nameserver Resolution
Detected 1 month, 2 weeks ago
Lookalike Domain
visa.by
Legitimate Domain (Target)
visa.com
Payment verification scams
Registrar
Open Contact, Ltd
Website Status
Live
Detection Date
February 04, 2026 10:14
Domain Creation Date
April 04, 2006
RDAP Takedown Status
Taken Down No Nameserver Resolution
Discovery Method
Fuzzer
DNS Records
Nameservers
dns1.yandex.net., dns2.yandex.net.
MX Records (Mail Servers)
mx.yandex.net.
SPF Record (Email Authentication)
v=spf1 redirect=_spf.yandex.net
Risk Score Breakdown

This risk score shows how dangerous this lookalike domain is. Higher scores indicate more active threats. Each indicator below adds points to the score (max 100).

Talos Blacklist

Not on Talos blacklist

+0
Dangerous Registrar

Registrar 'Open Contact, Ltd' not on dangerous list

+0
Dangerous Email Provider

MX record 'mx.yandex.net.' not on dangerous list

+0
MX Records Configured

Email servers configured: mx.yandex.net.

+15
SPF Records

No SPF authentication configured or no sending directives

+0
Website is Live

Domain has an active, live website

+10
Website is Parked

Website status: Live

+0
Website is Phishing

Website status: Live

+0
Domain Age

Domain registered 7290 days ago (older than 90 days)

+0
Domain Taken Down

Domain taken down: No Nameserver Resolution

+-20
Total Score: 5 / 100
3 of 10 factors active
Threat Level
5 / 100
Low Risk

Low threat level. Continue monitoring but no immediate action needed.

Key Threat Signals
  • Talos Blacklisted No
  • Website Active Yes
  • Email Capability Enabled
  • Email Authentication Configured
  • Taken Down Yes
Related Threats

Other domains attacking visa.com

Remove This Threat

Our specialist team removes malicious domains in 24-48 hours.

Start Takedown Process
Daniel Hovasse
Need Help?
Contact our expert
Daniel Hovasse
Detect Lookalike Domains

Find domains that impersonate your brand. Scan for lookalike domains that could be used for phishing or fraud.

Scan for Lookalikes