by[.]byqgwcgzs[.]cn
“跨境电商物流单号网,DHL单号,USPS单号,FEDEX单号!”
by.byqgwcgzs.cn — Non vérifié. Usurpation de l'identité de la marque : Amazon; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 17/91 (ADMINUSLabs, Criminal IP, BitDefender, CyRadar, ESET); CF Radar malicious; PhishDestroy score 100/100. Bureau d’enregistrement: 广州云讯信息科技有限公司.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain by.byqgwcgzs.cn has been assessed as having an elevated risk level due to its specific threat type of brand impersonation. This domain impersonates Amazon, a well-known e-commerce brand, and is designed to deceive users into believing they are interacting with a legitimate Amazon service.
Analysis indicates that by.byqgwcgzs.cn was flagged by 20 out of 95 security vendors on VirusTotal, suggesting a significant level of suspicion among the security community. The domain was registered through Guangzhou Yunxun Information Technology Co., Ltd., and it resolves to the IP address 103.217.207.157, which is located in China (AS146817 Hubei Feixun Network Co., Ltd). The domain was created on April 16, 2023, and has appeared on 2 security blocklists, including PhishDestroy and PhishingDB. The SSL certificate for this domain is issued by Let's Encrypt / R13, which is a common certificate authority used by legitimate and malicious sites alike. The page title, '跨境电商物流单号网,DHL单号,USPS单号,FEDEX单号!', suggests that the site may be impersonating a logistics or tracking service related to Amazon.
To mitigate the risks associated with this brand impersonation domain, users should be educated to verify the URL of any website they visit, especially those purporting to be associated with Amazon. Security teams should implement DNS and IP-based blocking rules to prevent access to 103.217.207.157 and by.byqgwcgzs.cn. Additionally, monitoring for similar domain names and IP addresses can help identify and block related malicious activities. It is also recommended to configure firewalls and web filters to block access to known malicious domains and IP addresses listed in security blocklists.
Signaux de sécurité
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 4 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org Confiance à 100 %jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com Confiance à 100 %HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of by.byqgwcgzs.cn · checked Apr 23, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif