no-reply-amazon.cfd
Appeared in the .cfd zone on Sunday, September 6, 2026; by the end of that day the census found server error. Full domain report
Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.
Own one of these names and think the listing is wrong? Tell us and a person will look.
What matched
Model opinions
The name mimics an Amazon transactional-mail sender ('no-reply-amazon') on a cheap .cfd TLD behind Cloudflare NS, but the site returns only a Cloudflare 521 error with no content to judge; a no-reply-<brand> label has no plausible legitimate use other than lending credibility to Amazon-branded phishing mail, so it is a brand-squat set up for deception rather than an active phishing page yet.
The domain 'no-reply-amazon.cfd' is a brand-squat using Amazon's name with a suspicious TLD (.cfd), designed to impersonate Amazon's no-reply notification infrastructure. While currently showing a Cloudflare 521 error (a hosting placeholder), the typosquat name and structure indicate preparation for phishing; the domain has no legitimate business purpose and exists solely to deceive visitors into believing it is Amazon infrastructure.
A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.
What the page looked like on Sunday, September 6, 2026

Same data as JSON: /api/zone/domain/no-reply-amazon.cfd. This page is not indexed by search engines and does not link to the site it describes.