epostcaribbean[.]cwy[.]teq[.]mybluehost[.]me
“顺丰速运”
epostcaribbean.cwy.teq.mybluehost.me — المحتوى غير متوفر. ملخص الأدلة: VirusTotal 8/95 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, Fortinet); CF Radar malicious; PhishDestroy score 79/100. مسجّل النطاق: Domain.com - Network S….
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of epostcaribbean.cwy.teq.mybluehost.me shows a clear phishing profile despite the site being taken offline at the time of review. The domain was registered on October 5, 2016 through Domain.com – Network Solutions, LLC, and is served by Apache HTTP Server on a hosting environment that resolves to IP address 162.214.190.13. The IP is allocated to Unified Layer (AS46606) and resides in the United States. The domain’s DNS configuration uses the authoritative nameservers ns1.mybluehost.me and ns2.mybluehost.me, both operated by the MyBluehost hosting platform. An SSL certificate issued by Let’s Encrypt (R13) is present, indicating that the site attempted to present encrypted communications, a common tactic used to increase victim trust.
The page title returned by the server is "顺丰速运," a reference to a well‑known logistics brand, but no further content analysis is available because the site is offline. Reputation services record extremely low trust scores: Scamadviser rates the domain 1 / 100 and Gridinsoft assigns a score of 0 / 100, reinforcing the malicious assessment. The domain appears on a single security blocklist and has been explicitly blocked by PhishDestroy. VirusTotal scanning identified eight detections out of ninety‑five antivirus engines, providing independent confirmation of malicious behavior.
For defenders, the immediate recommendation is to add the IP address 162.214.190.13 to network deny lists and to block any future DNS resolutions of epostcaribbean.cwy.teq.mybluehost.me. Monitoring for re‑use of the underlying hosting infrastructure or similar domain patterns is advisable, as threat actors often recycle assets after takedown. Continuous probing of the associated nameservers for new subdomains or redeployments should be incorporated into threat‑intel feeds. The combination of low trust scores, multiple vendor detections, and active blocklist entries substantiates a high confidence classification of this domain as a phishing resource.
مؤشرات الأمان
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 1 identified
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of epostcaribbean.cwy.teq.mybluehost.me · checked Mar 6, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب