MALICIOUS — CRITICAL
Analyse phishing et sécurité de dhlorg.us.cc
dhlorg[.]
This domain, dhlorg.us.cc, is identified as a delivery scam phishing infrastructure designed to deceive users into disclosing sensitive information under the pretense of parcel tracking or shipping notifications.
- VirusTotal
- 7/91
- Blocklists
- No stored match
- Disponibilité
- Contenu indisponible · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
dhlorg.us.cc — Contenu indisponible (HTTP 502). Usurpation de l'identité de la marque : DHL; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 7/91 (ADMINUSLabs, alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); Spamhaus DBL_PHISH; PhishDestroy score 71/100. Bureau d’enregistrement: Gname.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Evidence Analysis
This domain, dhlorg.us.cc, is identified as a delivery scam phishing infrastructure designed to deceive users into disclosing sensitive information under the pretense of parcel tracking or shipping notifications. Analysis indicates the domain mimics legitimate logistics services, employing social engineering tactics to trick victims into entering credentials, payment details, or personal data on fraudulent web forms. The threat primarily targets individuals expecting package deliveries, exploiting trust in well-known courier brands to facilitate credential theft or financial fraud.
Infrastructure analysis reveals the domain was registered on June 12, 2026, through Gname.com Pte. Ltd., a registrar frequently associated with high-risk domains. As of the latest assessment, 7 out of 95 security vendors on VirusTotal flagged dhlorg.us.cc as malicious, while it appears on one security blocklist. The domain has since been taken offline, though its prior activity and registration details remain indicative of coordinated fraudulent operations.
Users who visited dhlorg.us.cc or interacted with any associated content should immediately revoke any entered credentials, particularly for financial or email accounts. Monitor linked accounts for unauthorized transactions or suspicious activity, and consider implementing multi-factor authentication where available. If payment details were submitted, notify relevant financial institutions to prevent fraudulent charges. Additionally, scan affected devices for malware, as phishing domains often redirect to exploit kits or download malicious payloads.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Couverture des données12 recorded checks
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.