Aller au rapport de sécurité
Checked 09/08/2026 Ref E24A8AC2

MALICIOUS — CRITICAL

Analyse phishing et sécurité de usit.informedgreetings.com

usit[.]informedgreetings[.]com

The domain usit.informedgreetings.com has been identified as a brand impersonation phishing threat, specifically targeting users of the United States Postal Service (USPS).

100/100 evidence score · Critical
VirusTotal
22/93
Blocklists
No stored match
Disponibilité
Dernier actif connu · HTTP 308
Report / Add Evidence Appeal this listing
2026-03-27 12:42 UTCDernier actif connu · HTTP 308

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Ce domaine a été signalé comme malveillant
Moteurs de sécurité signalant une détection : 22. Faites preuve d’une extrême prudence – ne saisissez pas d’informations d’identification ou d’informations personnelles.
Jump to section
Résumé du rapport

usit.informedgreetings.com — Dernier actif connu (HTTP 308). Usurpation de l'identité de la marque : Usps; Type d'arnaque : Impersonation. Résumé des preuves: VirusTotal 22/93 (ADMINUSLabs, alphaMountain.ai, ArcSight Threat Intelligence, BitDefender, Cluster25); URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. Bureau d’enregistrement: GoDaddy.

L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.

Evidence Analysis

Ref E24A8AC2

The domain usit.informedgreetings.com has been identified as a brand impersonation phishing threat, specifically targeting users of the United States Postal Service (USPS). This domain is currently offline, but during its active period it posed as an official USPS service called 'USPS Informed Greetings' to deceive visitors into providing sensitive information. The threat type is credential theft, as the fraudulent page likely aimed to capture login credentials and personal data.

According to available intelligence, this domain was flagged by 22 of 95 VirusTotal security vendors, indicating a significant consensus on its malicious nature. The domain was registered through GoDaddy.com, LLC and created on February 21, 2026. It resolves to IP address 20.241.248.214 and uses an SSL certificate issued by Let's Encrypt (R13), which gives it a false sense of legitimacy. Additionally, it appears on two security blocklists and was flagged by Google Safe Browsing for phishing. The page title was 'USPS Informed Greetings', furthering the impersonation of the USPS brand.

The domain has been taken offline, which is a positive development, but users should remain vigilant. PhishDestroy recommends that anyone who may have interacted with this site change their USPS account passwords immediately and enable two-factor authentication. Always verify URLs by checking for official domains like usps.com, and avoid clicking on links in unsolicited messages. If you suspect your information was compromised, monitor your accounts for suspicious activity and consider placing a fraud alert on your credit reports.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
22 det.
DNS Security
2/14
CF Radar
Malveillant
URLScan
URLScan
Certificat TLS
Expiré ou non vérifié -59d
Âge
6 mo
Statut observé
Dernier actif connu 308
PhishDestroy
DestroyList
Répertorié
Couverture des données12 recorded checks
VirusTotal 22 / 93 URLQuery pas vérifié PhishStats checked — no match recorded OTX no community references CF Radar provider verdict: malicious URLScan capture rapport stocké URLScan verdict malicious Blocs DNS 2/14 TLS Expiré ou non vérifié WHOIS 6 mo old Capture d'écran 2 captures · 2 sources Chaîne de redirection non sondé
Renseignements sur la sécurité réseau
DNS Provider Blocks 2 / 14
Cloudflare Family Cloudflare Security
CF Cloudflare Radar Verdict Malveillant
Phishing

Processus de réponse aux menaces Pipeline

Découverte
Checks
Reports
Disponibilité
13/15
Menace détectée
usit.informedgreetings.com détectés et mis en file d'attente en vue d'une analyse complète
26/02/2026
URLScan.io Capture
Stored URLScan report with capture artifacts
27/03/2026
URLScan Verdict
URLScan returned a malicious verdict · score 100
29/07/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
22/93 recorded on VirusTotal
18/07/2026
Google Safe Browsing
02/03/2026
DNS Security Blocks
Blocked by 2 of 14 checked DNS providers: Cloudflare family, Cloudflare security
CF Radar: Malicious
Cloudflare Radar classified this domain as phishing
Brand Impersonation
Impersonation of Usps
Forensic Evidence Collected
Stored evidence from URLScan.io, stored screenshot
27/03/2026
Technical Analysis Recorded
Le rapport contient des résultats de technologie ou d’analyse médico-légale stockés.
09/08/2026
Cloudflare Radar Scan
Scanné avec le radar Cloudflare ; analyse du réseau terminée.
02/03/2026
Complaint Draft Available
Aucune soumission n'est enregistrée. Vous pouvez créer un brouillon, le réviser et le soumettre vous-même à l'autorité compétente.
DestroyList publié
26/02/2026
Monitoring Continues
Le domaine reste accessible ou restreint en accès ; des contrôles futurs pourraient mettre à jour cette observation.

Statut de la liste de blocage publique

Capture enregistrée

Titre de la page
USPS Informed Greetings
Certificat TLS
Expiré ou non vérifié · Émis par Let's Encrypt / R13

Informations sur les domaines

Domaine
URLScan Verdict Malveillant score 100 Phishing brand: Usps report ↗
Google Safe Browsing Marqué Social engineering checked 02/03/2026
Serveur / ASN AS8075 MICROSOFT-CORP-MSN-AS-BLOCK - Microsoft Corporation, US
Réputation de l’IP abuse score 0/100 0 reports checked 27/07/2026
Registrar (base domain) GoDaddy US(US)
Adresse IP 20.241.248.214 US
LocalisationUS Washington, US
RéseauAS8075 · Microsoft Corporation
Registration (base domain)informedgreetings.com · Créé 21/02/2026 (169d)
Statut HTTP308 Permanent Redirect
Elapsed Since First Report 132 days
Ce que nous comptons Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Dernier actif connu.
Ce que contient chaque rapport Les enregistrements de rapports sortants stockés peuvent faire référence à des preuves disponibles à ce moment-là, telles que les verdicts des fournisseurs, les données d'enregistrement, les détails d'hébergement, les classifications ou les captures d'écran. Cette page ne déduit pas la charge utile exacte livrée, la réception, l'accusé de réception ou l'action d'un destinataire.
Détails techniquesDNS, SAN SSL, horodatages
Première détection26/02/2026
DOM Analysisanalyzed 28/07/2026score 98/100
IoC Extractionscanned 02/08/20260 wallet · 0 Telegram IoCs
Serveurs de nomsns4-01.azure-dns.info
TLS Fingerprint
TLS Observationvalid from 14/03/2026scanned 15/03/2026
TLS SAN Domainsdev-hc-pdf-server.informedgreetings.comdev-services.informedgreetings.comdev.informedgreetings.comudev-services.informedgreetings.comudev.informedgreetings.comusit-services.informedgreetings.com
ICANN OVERSIGHT Registration: informedgreetings.com

Contexte de l’accréditation et du RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain informedgreetings.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Rien n’est envoyé automatiquement.
Technologies · 1 identified
HSTS
Sécurité

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

Detected via Cloudflare Radar · Wappalyzer engine
Signaler ce domaine Envoyez des éléments de preuve et contribuez à protéger les autres

Analyse VirusTotal

22 / Les fournisseurs de sécurité 93 ont signalé ce domaine
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
ArcSight Threat Intelligence
BitDefender
Cluster25
CRDF
CyRadar
Ermes
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Google Safebrowsing
Kaspersky
Lionic
Phishing Database
Seclookup
SOCRadar
Sophos
Trustwave
VIPRE
Webroot
Analyse des performances du site

Google PageSpeed Insights — mobile performance audit of usit.informedgreetings.com · checked Mar 6, 2026

22
Poor
Performance
FCP
9.14s
First Contentful Paint
LCP
18.12s
Largest Contentful Paint
CLS
0.176
Cumulative Layout Shift
TBT
1402ms
Total Blocking Time
SI
11.68s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.

Europol
Trouvez le canal de signalement officiel pour votre pays de l'UE
National police directory
Méfiez-vous des escrocs qui prétendent vous aider à récupérer vos biens ! Les criminels peuvent recontacter leurs victimes tout en se faisant passer pour des enquêteurs, des avocats ou des agents de recouvrement. Ne payez pas de frais initiaux et ne partagez pas vos informations d'identification. En savoir plus sur la fraude liée aux aides à la reprise →

Signalez-le à vos autorités locales

Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.

Annuaire de 97 pays
Brouillon assisté par l'IA : les détails de l'incident sont traités par le fournisseur d'IA Examinez-le et soumettez-le vous-même
Intégrer ce rapportRead-only HTML widget
HTML · IFRAME

Intégrer ce rapport

Partagez ces informations sur les menaces sur votre site web ou votre blog

embed.html
<iframe
  src="https://phishdestroy.io/fr/embed/domain/usit.informedgreetings.com"
  title="PhishDestroy threat report for usit.informedgreetings.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Une lettre de remerciement très sincère

Générateur de brouillon satirique

Destinataire
Contexte des frais

Brouillon satirique. Les montants des frais sont des estimations ; aucune attribution exacte à ce domaine n’est affirmée.