info[.]fast-shipping[.]it
Résumé des preuves
info.fast-shipping.it was registered on June 03, 2026 and resolves to the IPv4 address 3.248.19.132, which belongs to an Amazon Web Services EC2 instance in the eu-west-1 region of Ireland. The rapid registration and use of cloud infrastructure are consistent with a short-lived campaign designed to host malicious web content.
A direct HTTP request returns status code 200, indicating that a web server is actively serving pages. The site presents a Sectigo Limited / Sectito Public Server Authentication CA DV R36 TLS certificate, a publicly trusted certificate that masks the underlying intent. Reputation checks show the domain on a single security blocklist, a Gridinsoft trust score of 0 out of 100, and seven of ninety-five VirusTotal scanners flagging it as malicious. PhishDestroy also lists the domain as blocked.
The content served by the site has not been publicly disclosed, and no specific phishing landing pages or credential-harvesting forms have been captured in open-source feeds. Consequently, the exact branding, lure technique, or victim profile targeted by this domain remain unknown. The limited number of detections suggests either a very recent deployment or a low-volume operation that has not yet been widely shared.
Defenders should treat info.fast-shipping.it as a high-risk indicator. Immediate actions include adding the domain and its resolved IP address to outbound allow-list blocks, updating DNS filtering policies, and enabling TLS inspection to intercept any encrypted traffic. Continuous monitoring for new samples, URL redirects, or related domains sharing the same AWS subnet is advised. Incident response teams should also review email logs for any messages referencing “fast‑shipping” or similar phrasing, as the domain name hints at a logistics-related phishing lure.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif