Lompat ke laporan keamanan
⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 4. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@kurun.com. The latest stored availability evidence still shows the domain reachable; 8 days has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
8 days
Reports sent
1
Latest case ID
PD-20260810-04CAD7
Current status
Observed active at latest stored check
Keamanan domain dan intelijen ancaman

xn--0lq2j11d[.]net

“花无忧先享”

Putusan ancaman Kritis 86/100 skor bukti
Ketersediaan Belum terverifikasi Keterjangkauan saat ini belum terverifikasi
Deteksi Total Virus: 4/91 Spamhaus DBL: DBL_SPAM URLQuery threat systems: 1 alert Domain muda: 12 berumur hari
OTX: 4 refs 10/08/2026 1 Report Sent
Ringkasan laporan

xn--0lq2j11d.net — Belum terverifikasi. Ringkasan bukti: VirusTotal 4/91 (alphaMountain.ai, Fortinet, Gridinsoft, SOCRadar); URLQuery 1 alert; Spamhaus DBL_SPAM; PhishDestroy score 86/100. Registrar: NiceNIC.

Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.

Ringkasan bukti
KRITIS
Ref
96D5B094
Skor
86/100

PhishDestroy first observed xn--0lq2j11d.net on Aug 10, 2026. The captured page title is “花无忧先享”. Current evidence score: 86/100 (critical).

Positive findings are stored from 3 sources: VirusTotal, Spamhaus DBL, and URLQuery. VirusTotal recorded 4 detections among 91 engines: alphaMountain.ai, Fortinet, Gridinsoft, SOCRadar on Aug 19, 2026 at 00:06 UTC. Spamhaus DBL: DBL_SPAM on Aug 10, 2026 at 06:30 UTC. URLQuery recorded 1 threat-system alert on Aug 10, 2026 at 05:38 UTC. Non-positive and contextual checks: AlienVault OTX listed 4 community pulse references (not vendor detections) on Aug 19, 2026 at 00:08 UTC. The separate external-blocklist snapshot contained no matches on Aug 18, 2026 at 22:20 UTC. Google Safe Browsing returned no flag on Aug 19, 2026 at 00:07 UTC. URLScan completed without a malicious verdict (score 0) on Aug 10, 2026 at 11:08 UTC.

The collector marked the hostname reachable on Aug 18, 2026 at 22:15 UTC, but did not retain the HTTP response code. Latest classified outcome: live content observed; cause content served on Aug 18, 2026 at 00:50 UTC. Registration records for the domain list NICENIC INTERNATIONAL GROUP CO., LIMITED as the registrar and Aug 6, 2026 as the creation date. Registration preceded first observation by 3 days. At collection time, the hostname resolved to 38.148.255.16 on AS8796 (FASTNET DATA INC). The recorded endpoint location is Los Angeles, US. The stored server header is nginx. DOM analysis on Aug 10, 2026 at 06:22 UTC returned 86/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. TLS metadata lists TrustAsia Technologies, Inc. as the certificate issuer with validity through Nov 4, 2026; checked Aug 10, 2026 at 07:02 UTC.

The content indicators and 3 positive source findings support the current phishing classification. The stored fields do not identify an impersonated brand or victim interaction.

VirusTotal
VirusTotal
4 det.
URLQuery
URLQuery
1 threat alert
OTX references
URLScan
URLScan
Sertifikat TLS
TrustAsia Technologies, Inc.
Usia
12d Very New!
Status terpantau
Belum terverifikasi
PhishDestroy
Daftar Hapus
Terdaftar
Reports Sent
1
Cakupan data VirusTotal 4 / 91 URLQuery 1 threat-system alert PhishStats tidak diperiksa OTX 4 community references CF Radar scan completed URLScan capture laporan yang disimpan URLScan verdict Analisis selesai Pemblokiran DNS tidak diperiksa TLS valid certificate, 77d WHOIS 12d old Tangkapan layar 3 captures · 3 sources Rantai pengalihan tidak diselidiki
Intelijen Keamanan Jaringan Registrar context
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU xn--0lq2j11d.net malicious Sinkholed
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
14/15
Sent Report Recorded
Stored sent-report record for registrar NICENIC INTERNATIONAL GROUP CO., LIMITED, hosting provider, 2 abuse contacts
abuse@kurun.comabuse@nicenic.net
10/08/2026

Status Daftar Blokir Publik

Tangkapan tersimpan

Judul Halaman
花无忧先享
Sertifikat TLS
Valid transport encryption · Diterbitkan oleh TrustAsia Technologies, Inc. · valid for 77 days

Intelijen Domain

Domain
URLScan Verdict Analisis selesai score 0 report ↗
Server / ASN nginx · AS8796 FASTNET DATA INC
Reputasi IP abuse score 0/100 0 reports checked 10/08/2026
Alamat IP 38.148.255.16 US
LokasiUS Los Angeles, US
JaringanAS8796 · Kurun Cloud Inc
PendaftaranDibuat 06/08/2026 (12d · Very New!) Expires 06/08/2027
Rincian teknisDNS, SAN SSL, cap waktu
Pertama Kali Terdeteksi10/08/2026
DOM Analysisanalyzed 10/08/2026score 86/100
IoC Extractionscanned 11/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://xn--0lq2j11d.net/
Server namans303.jpisp.comns304.jpisp.com
TLS Fingerprint
TLS Observationvalid from 06/08/2026scanned 10/08/2026
TLS SAN Domainsqd.zieolmi.cn
Case ID
ICANN OVERSIGHT

Akreditasi dan konteks RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Tidak ada yang dikirim secara otomatis.

Latest Classified Outcome 2026-08-18 02:50:43 UTC

Primary outcome Live content reason: Ordinary HTTP content served 90% confidence
Attribution source: Current Http Probe
Evidence layers Availability: Content serving Content: Content served at root DNS: Resolved Registration: Unknown
Latest HTTP observation Live content Ordinary HTTP content served 90% 2026-08-18 02:50:43 UTC
RDAP registration Tidak diketahui
Observed timeline last reachable: 2026-08-18 02:50:43 UTC last content: 2026-08-18 02:50:43 UTC
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.
Teknologi · 3 identified
Vue.js
JavaScript frameworks

Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.

vuejs.org Keyakinan 100%
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org Keyakinan 100%
HSTS
Keamanan

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org Keyakinan 100%
Detected via Cloudflare Radar · Wappalyzer engine
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

4 / Vendor keamanan 91 menandai domain ini
View on VT
Last analyzed First positive detection Previous stored snapshot: 4 detections
alphaMountain.ai
Fortinet
Gridinsoft
SOCRadar
Analisis Performa Situs

Google PageSpeed Insights — mobile performance audit of xn--0lq2j11d.net · checked Aug 10, 2026

97
Good
Performance
FCP
1.22s
First Contentful Paint
LCP
2.57s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
7ms
Total Blocking Time
SI
2.27s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Bukti & Laporan Eksternal

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260810-04CAD7 Recipient: abuse@kurun.com
Page title stored with report: 花无忧先享
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 73.5 KB

Apakah Anda Terpengaruh oleh Situs Ini?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri

Periksa Domain Apa Pun

Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik

Pindai Sekarang

Laporkan Phishing

Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas

Laporan

Pemberitahuan Ancaman Real-Time

Laporan phishing terbaru dan perubahan ketersediaan yang diamati

Pantau

Tetap Terinformasi, Tetap Aman

Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive

Pemberitahuan Ancaman Real-Time Ajukan Banding Terhadap Iklan Ini
HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/xn--0lq2j11d.net"
  title="PhishDestroy threat report for xn--0lq2j11d.net"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Surat Terima Kasih yang Sangat Tulus

Pembuat draf satir

Penerima
Konteks biaya

Draf satir. Angka biaya merupakan perkiraan; tidak diklaim bahwa angka tersebut secara tepat terkait dengan domain ini.