Lookalike Domain Analysis

Detailed risk assessment for ccnva.com

Back to Report
Domain Information
Lookalike Domain
ccnva.com
Legitimate Domain (Target)
canva.com
Account takeover
Registrar
GoDaddy.com, LLC
Website Status
Parked
Detection Date
February 03, 2026 13:13
Domain Creation Date
March 01, 1999
RDAP Takedown Status
Active
Discovery Method
Fuzzer
DNS Records
Nameservers
ns809.websitewelcome.com., ns810.websitewelcome.com.
MX Records (Mail Servers)
us-smtp-inbound-1.mimecast.com., us-smtp-inbound-2.mimecast.com.
SPF Record (Email Authentication)
v=spf1 include:us._netblocks.mimecast.com ip4:72.84.224.82 -all
Risk Score Breakdown

This risk score shows how dangerous this lookalike domain is. Higher scores indicate more active threats. Each indicator below adds points to the score (max 100).

Talos Blacklist

Not on Talos blacklist

+0
Dangerous Registrar

Registrar 'GoDaddy.com, LLC' not on dangerous list

+0
Dangerous Email Provider

MX record 'us-smtp-inbound-1.mimecast.com., us-smtp' not on dangerous list

+0
MX Records Configured

Email servers configured: us-smtp-inbound-1.mimecast.com., us-smtp-inbound-2...

+15
SPF Records

SPF authentication configured with sending directives

+15
Website is Live

Website status: Parked

+0
Website is Parked

Domain has a parked website

+5
Website is Phishing

Website status: Parked

+0
Domain Age

Domain registered 9881 days ago (older than 90 days)

+0
Total Score: 35 / 100
3 of 9 factors active
Threat Level
35 / 100
Medium Risk

Moderate risk detected. Monitor closely for changes that increase threat level.

Key Threat Signals
  • Talos Blacklisted No
  • Website Active No
  • Email Capability Enabled
  • Email Authentication Configured
  • Taken Down No
Related Threats

Other domains attacking canva.com

Remove This Threat

Our specialist team removes malicious domains in 24-48 hours.

Start Takedown Process
Daniel Hovasse
Need Help?
Contact our expert
Daniel Hovasse
Detect Lookalike Domains

Find domains that impersonate your brand. Scan for lookalike domains that could be used for phishing or fraud.

Scan for Lookalikes