ydbee[.]cn
“云端蜜蜂”
साक्ष्य सारांश
The domain ydbee.cn is flagged as a high-risk active phishing threat. Registered on August 9, 2024, through Tencent Cloud Computing (Beijing) Co., Ltd., the domain remains operational as of July 12, 2026. It resolves to IP address 8.138.118.226, hosted in China on AS37963 (Hangzhou Alibaba Advertising Co., Ltd.), and uses nameservers vip3.alidns.com and vip4.alidns.com. The page title is '云端蜜蜂' (Cloud Bee), but the specific brand or service being impersonated is not confirmed from available intelligence. The site runs on Typecho, PHP, Nginx, and OpenResty, with client-side technologies including jQuery, jQuery-pjax, and Highlight.js, and enforces HSTS. SSL certificate is issued by Google Trust Services (WR1). MX records point to mx1.feishu.cn and mx2.feishu.cn, suggesting email handling through the Feishu platform. VirusTotal shows 2 out of 95 security vendors flagging the domain, and it appears on one security blocklist (PhishDestroy). Gridinsoft trust score is 0/100. The exact phishing lure or content type remains unverified, as no page source or visual analysis is available. Defenders should block the domain at network and email gateways, monitor for related subdomains or IPs, and investigate the Feishu MX association for potential email-based phishing campaigns. Since the site is still live, additional threat hunting for credential harvesting or data exfiltration endpoints is recommended.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
VirusTotal
2 → 1
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of ydbee.cn · checked Mar 7, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।