Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@microsoft.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
028pj8[.]com
فحص التصيد والأمان للنطاق 028pj8.com
“验证”
028pj8.com — آخر نشاط معروف (HTTP 301). نوع الاحتيال: Impersonation. ملخص الأدلة: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 1 alert; PhishDestroy score 100/100. مسجّل النطاق: Dynadot.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain, 028pj8.com, is actively flagged as a high-risk generic phishing site. Analysis indicates the page title is '验证' (Chinese for 'verification'), suggesting it may target users with fraudulent authentication prompts. The domain was registered on March 3, 2026, through Dynadot LLC, and currently resolves to the IP address 20.255.200.238. As of July 12, 2026, it remains operational and is detected by 15 out of 95 security vendors on VirusTotal, with a trust score of 0/100 from Gridinsoft. Infrastructure analysis reveals the use of Let's Encrypt SSL certificates and front-end technologies including jQuery UI, jQuery CDN, and jQuery. The domain appears on two security blocklists and has been referenced in 24 threat intelligence pulses on AlienVault OTX, indicating prior malicious activity. While the exact brand or service being impersonated is not confirmed from available data, the presence of a verification-themed page title aligns with common phishing tactics designed to harvest credentials or personal information. No specific phishing kit or campaign has been attributed to this domain based on current intelligence. However, the combination of recent registration, active blocking by security tools, and consistent detection across multiple vendors confirms its malicious classification. Defenders should treat this domain as hostile and prioritize blocking it at DNS, proxy, and endpoint layers. Further analysis of network traffic or captured payloads may clarify the exact phishing methodology or targeted sector, but current evidence supports immediate containment measures.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | 028pj8.com |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات · 3 identified
Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of 028pj8.com · checked Jul 12, 2026
تحليل إعدادات الموقع
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260303-54E3F6 Recipient: abuse@microsoft.com Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.