MALICIOUS — CRITICAL
dalasiec[.]com
This domain, dalasiec.com, is actively engaged in credential theft operations targeting users through a Chinese-language interface.
- VirusTotal
- 16/91
- Blocklists
- No stored match
- التوفر
- المحتوى غير متوفر · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
dalasiec.com — المحتوى غير متوفر (HTTP 502). ملخص الأدلة: VirusTotal 16/91 (alphaMountain.ai, Cluster25, CRDF, ESET, Emsisoft); PhishDestroy score 95/100. مسجّل النطاق: Unstoppable Domains.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
This domain, dalasiec.com, is actively engaged in credential theft operations targeting users through a Chinese-language interface. The page title, rendered as 欢è¿å 临, suggests an attempt to mimic legitimate services or platforms frequented by Chinese-speaking users, potentially harvesting login credentials, personal data, or financial information. The site employs social engineering tactics to deceive visitors into entering sensitive information, which may be exfiltrated to attacker-controlled infrastructure for further exploitation, including account takeovers or identity theft. Analysis of dalasiec.com reveals multiple indicators of malicious activity. The domain was registered on September 29, 2025, through Unstoppable Domains Inc., a registrar often associated with high-risk registrations. As of the latest scan, 8 out of 95 security vendors on VirusTotal have flagged this domain as malicious, indicating a consensus among threat intelligence sources regarding its harmful nature. The domain resolves to the IP address 156.227.74.39, which may be part of a broader infrastructure used for hosting phishing or credential harvesting pages. No legitimate services or affiliations have been identified for this domain, further corroborating its malicious intent. Users who have visited dalasiec.com or interacted with its content should take immediate action to mitigate potential risks. If credentials or personal information were entered, affected accounts should be secured by changing passwords and enabling multi-factor authentication where available. Monitoring for unauthorized transactions or suspicious activity on linked accounts is strongly recommended. Additionally, any devices used to access the domain should be scanned for malware or unauthorized access. Network-level blocking of the domain and its associated IP address (156.227.74.39) is advised to prevent further exposure. Organizations should update their blocklists to include this domain and its indicators to protect users from credential theft attempts.
نطاق تغطية البيانات12 recorded checks
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة والتقارير الخارجيةIndependent lookups and source reports
PD-20260712-A85B2C Recipient: abuse@unstoppabledomains.com Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.