auspost.customerserviceqh.com
“Verify you are human”
Evidence Summary
The domain auspost.customerserviceqh.com is currently active and serves a generic phishing page titled "Verify you are human". The site presents an HTTP 200 response and is protected by a Let’s Encrypt certificate (identifier YE2). DNS resolution points to IP 47.79.39.190, which is hosted in Japan and listed under the network operators Northern Cable and Fiber, Delta Centric LLC, and Zenlayer Inc. The domain is registered through Dominet (HK) Limited and uses the authoritative nameservers ns7.alidns.com and ns8.alidns.com. Security telemetry shows that 22 of 91 VirusTotal scanners have flagged the domain, and it is already blocked by the PhishDestroy blacklist. While the page content beyond the title has not been publicly disclosed, the presence of a human‑verification prompt suggests an attempt to bypass automated analysis and lure victims into submitting credentials or personal data. Defenders should add the domain and its resolving IP to outbound blocklists, monitor for DNS queries to the associated nameservers, and consider sinkholing the IP range if feasible. Continuous re‑scanning is advised to detect any evolution of the payload, and any observed traffic should be logged for correlation with similar phishing campaigns targeting Australian postal services.
Network Security Intelligence
Detection timeline
-
Domain status
Reachable → Unreachable
Threat Response Pipeline
Public Blocklist Status
Blocklist coverage
11 monitored external feeds · stored snapshot Sep 9, 2026
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Registration: customerserviceqh.com
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For the registrable domain customerserviceqh.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 2 identified
HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% confidenceVirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of auspost.customerserviceqh.com · checked Jul 20, 2026
Technologies
2 high-confidence technologies identified
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive