Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
cnssssex4[.]com
“cnssssex4.com”
Resumen de las pruebas
This domain, cnssssex4.com, is identified as a credential theft operation designed to harvest user login credentials, payment details, or other sensitive information through deceptive web forms. Analysis indicates the site employs social engineering tactics, such as fake login portals or fraudulent account verification prompts, to trick visitors into disclosing confidential data. The infrastructure is structured to mimic legitimate services, increasing the likelihood of successful exploitation for financial fraud or identity theft. Infrastructure analysis reveals multiple technical indicators supporting its malicious classification. The domain resolves to the IP address 185.53.179.146 and was registered on March 22, 2026, through Dynadot Inc. Security vendors on VirusTotal flagged the domain at a rate of 14/95, with two additional security blocklists listing it as a threat. The page title, matching the domain name, suggests minimal effort to disguise its purpose, further corroborating its fraudulent intent. Users who visited cnssssex4.com or entered credentials on the site should immediately revoke access to any accounts potentially exposed. Change passwords for all accounts where the same credentials may have been reused, prioritizing financial, email, and administrative services. Enable multi-factor authentication where available to mitigate unauthorized access. Monitor account statements and credit reports for signs of fraudulent activity, and report any suspicious transactions to the relevant financial institution. If personal data was submitted, consider placing a fraud alert with credit bureaus to prevent identity misuse.
Instantánea de evidencia enviada
- Enviado
- Registros del libro
- 1
- ID del caso
PD-20260622-265D36- Artefacto PDF
- Evidencia en PDF
Fundamento jurídico
Texto completo de la evidencia
Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains
Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Data Coverage
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 13/08/2026
10 fuentes externas supervisadas Sin coincidencias
Inteligencia de dominios
Detalles técnicosDNS, nombres TLS y marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.