Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is cloud-abuse@yandex-team.ru.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
danilandlubov[.]ru
“ÐÑиглаÑение на ÑвадÑÐ±Ñ - Ðаниил & ÐÑÐ±Ð¾Ð²Ñ (11.07.2026)”
danilandlubov.ru — مغطى بعباءة · يمكن الوصول إليه. نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLQuery 2 alerts; 1 external blocklist match (ScamSniffer); cloaking observed; PhishDestroy score 98/100. مسجّل النطاق: BEGET-RU.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy has identified danilandlubov.ru as a high-risk domain engaged in generic phishing activity. This means the site is designed to trick visitors into revealing sensitive information under false pretenses, such as fake wedding invitations. The domain is currently active and poses an ongoing threat to users who may encounter it through email or social media.
Technical analysis reveals that danilandlubov.ru was created on May 11, 2026, and registered through BEGET-RU. It resolves to IP address 188.72.103.3 and uses an SSL certificate from Let's Encrypt (R12), which gives it a false sense of legitimacy. VirusTotal data shows that 1 out of 95 security vendors flag this domain as malicious, and it appears on 2 security blocklists. Additionally, AlienVault OTX has tracked it in 1 threat intelligence pulse, indicating active monitoring by the security community. The page title contains garbled text for a wedding invitation, further confirming its phishing nature.
To protect against this generic phishing threat, users should never click on links in unsolicited messages claiming to be wedding invitations. If you have already visited danilandlubov.ru, do not enter any personal information. Run a full antivirus scan and change passwords for any accounts that may have been compromised. Report the domain to your email provider and block it at the network level to prevent future access.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | maps.googleapis.com/maps-api-v3/api/js/64/12d/intl/ru_all/common.js |
audit | Hunting_JS_WebAssembly |
| Hagezi Threat Feed | danilandlubov.ru |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 1 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org ثقة 100٪تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260510-F12C67 Recipient: cloud-abuse@yandex-team.ru هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب