सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 2। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
7 months
Reports sent
1
Current status
HTTP 301 at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

dhlexpress[.]ee

“DHL EXPRESS | Ekspress saadetis välismaale, online saatmise arvutamine”

धमकी भरा फैसला गंभीर 70/100 साक्ष्य स्कोर
उपलब्धता अंतिम ज्ञात सक्रिय नवीनतम संग्रहीत रीचैबिलिटी अवलोकन
वायरस का कुल पता लगाना: 2/91 URLQuery threat systems: 2 alerts ब्रांड प्रतिरूपण: Argent अंतिम ज्ञात सक्रिय
OTX: 3 refs 04/01/2026 Argent 1 Report Sent

साक्ष्य सारांश

आलोचनात्मक
Evidence score
70/100

The domain dhlexpress.ee is a phishing site engaged in brand impersonation of the shipping company DHL, specifically targeting users with a fake DHL Express service page. This domain poses an elevated risk as a shipping scam designed to steal personal or financial information. The site is currently taken offline, but its past activity indicates it was not safe and should be considered a scam.

The domain dhlexpress.ee was registered on December 4, 2020, through Key-Systems GmbH and resolves to IP address 81.95.110.236 located in the Czech Republic (AS25234 ACTIVE 24, s.r.o.). VirusTotal flags it with 1 detection out of 95 vendors, including alphaMountain.ai, and it appears on 1 security blocklist (PhishDestroy). Google Safe Browsing did not flag the site. The SSL certificate was issued by Let's Encrypt / E8. The page title observed was 'DHL EXPRESS | Ekspress saadetis välismaale, online saatmise arvutamine'. The domain has been found in 3 threat intelligence pulses on AlienVault OTX, and its Scamadviser trust score is 30 out of 100. Technologies detected include YouTube, Stimulus, Nginx, OneTrust, and Google Tag Manager. The nameservers are ns1.f5clouddns.com and ns2.f5clouddns.com.

Since dhlexpress.ee was a phishing site for credential or login theft, users who may have interacted with it should immediately change passwords for any accounts entered on the page and enable two-factor authentication where possible. Monitor financial accounts for unauthorized activity and report the incident to local authorities or cybersecurity bodies. The domain has been taken offline, but vigilance against similar brand impersonation attempts is advised.

भेजे गए प्रमाण का स्नैपशॉट

भेजा गया
लेज़र रिकॉर्ड
1
केस आईडी
PD-20260104-23EBBE
कैप्चर किए गए पेज का शीर्षक
DHL EXPRESS | Ekspress saadetis välismaale, online saatmise arvutamine
PDF दस्तावेज़
PDF प्रमाण
प्रमाण का पूरा पाठ
⚠ CRITICAL POLICY & LEGAL VIOLATIONS
This domain violates multiple sections of your Acceptable Use Policy (AUP) and Terms of Service (TOS):
🔴 AUP VIOLATIONS:
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Malicious Use: Abuse of your infrastructure for criminal purposes
⚖ APPLICABLE LAWS (Unknown):
• International Anti-Cybercrime Regulations
• Budapest Convention on Cybercrime
• Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
📋 REGULATORY CONTEXT (Unknown):
International cybercrime frameworks require documented abuse response. Systematic inaction may affect business relationships with payment processors and security vendors.
IMMEDIATE ACTION REQUIRED: This evidence-backed report demonstrates clear violations requiring suspension per your own policies.
Continued hosting exposes your organization to regulatory scrutiny, reputational damage, and potential legal liability.
Note: This domain has been publicly documented in threat intelligence feeds.
Your response (or lack thereof) is being monitored by security researchers and may affect trust scores used by
payment processors, CDN providers, and enterprise security vendors.
VirusTotal
VirusTotal
2 det.
URLQuery
यूआरएलक्वेरी
2 threat alerts
OTX references
TLS प्रमाणपत्र
समाप्त या असत्यापित -100d
आयु
5.7 yr
देखी गई स्थिति
अंतिम ज्ञात सक्रिय HTTP 301
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1

Data Coverage

VirusTotal 2 / 91 यूआरएलक्वेरी 2 threat-system alerts फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स 3 community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है 69 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
सुरक्षा संकेत
SA Scamadviser Warnings
The identity of the owner of the website is hidden on WHOIS The Tranco rank (how much traffic) is rather low The website was reported in the last 30 days as threat by DNSFilter This website was reported by IPQS for phishing. This website has been classified as suspicious by IPQS
We found a valid SSL certificate The site has been set-up several years ago
GS Gridinsoft Analysis
Hosting SSL Certificate Brands Cookie Consent Phishing - High Risk Web Application Google Tag Manager Google Maps
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 2 alerts
Detection System Indicator Verdict Alert
DNS0 Zero dhlexpress.ee malicious Sinkholed
DNS4EU dhlexpress.ee malicious Sinkholed

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
14/15

ब्लॉकलिस्ट कवरेज

10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026

10 निगरानी वाले बाहरी स्रोत कोई मिलान नहीं

पहचान समयरेखा

  1. VirusTotal

    1 → 3

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN nginx · AS25234 ACTIVE24-AS ACTIVE 24, s.r.o., CZ
IP प्रतिष्ठा IP abuse confidence 0/100 0 reports checked 17/07/2026
रजिस्ट्रार Key-Systems DE(DE)
दुरुपयोग संपर्कabuse@active24.cz
IP पता 81.95.110.236 CZ
भौगोलिक स्थानCZ Prague, CZ
नेटवर्कAS25234 · ACTIVE 24, s.r.o.
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 04/12/2020
HTTP स्थिति301 Moved Permanently
Elapsed Since First Report 70 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: अंतिम ज्ञात सक्रिय.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
पहली बार पता चला04/01/2026
DOM Analysisanalyzed 11/03/2026DOM analysis score 10/1004 brand signals
Submitted URLhttp://dhlexpress.ee/
नेमसर्वरns1.f5clouddns.comns2.f5clouddns.com
TLS फिंगरप्रिंट
TLS अवलोकन04/02/2026 से मान्य12/03/2026 को स्कैन किया गया
TLS सब्जेक्ट वैकल्पिक नामdhlexpressestonia.eewww.dhlexpress.eewww.dhlexpressestonia.ee
Favicon Hash
पेज शीर्षक
DHL EXPRESS | Ekspress saadetis välismaale, online saatmise arvutamine
Impersonates
Argent Dhl Google YouTube
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता Let's Encrypt / E8
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

2 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 1 detection
alphaMountain.ai
Chong Lua Dao
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of dhlexpress.ee · checked Mar 2, 2026

60
Needs Work
Performance
FCP
4.02s
First Contentful Paint
LCP
6.42s
Largest Contentful Paint
CLS
0.031
Cumulative Layout Shift
TBT
291ms
Total Blocking Time
SI
4.72s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
साइट कॉन्फ़िगरेशन विश्लेषण
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
Valid robots.txt; no Disallow/Allow paths were extracted.
Sitemap Present · HTTP 200
Valid sitemap observed; total page count is unavailable.

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें

बाहरी उपकरण

GridinsoftGridinsoft विश्वास स्कोर 100/100स्थिति: Cleanस्रोत खोलें
स्कैमएडवाइज़रScamAdviser विश्वास स्कोर 30/100स्थिति: Likely Unsafeस्रोत खोलें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/dhlexpress.ee"
  title="PhishDestroy threat report for dhlexpress.ee"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>