yxzdw[.]cn
“Apache Tomcat/9.0.65”
yxzdw.cn — Konten tidak tersedia. Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 21/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 4 alerts; Google Safe Browsing flagged; PhishDestroy score 95/100. Registrar: Web Commerce Communica….
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, yxzdw.cn, is identified as a credential theft operation designed to harvest login credentials, payment details, or other sensitive user data. Such sites often mimic legitimate services, tricking visitors into entering personal information under false pretenses. The threat is particularly dangerous for users who may unknowingly disclose credentials, leading to account takeovers, financial fraud, or identity theft. Given its high-risk classification, interaction with this domain should be avoided entirely. Analysis indicates yxzdw.cn was created on November 27, 2025, an unusually future-dated registration that suggests potential domain spoofing or fraudulent activity. The domain is hosted on IP address 161.248.14.214, located in Malaysia and associated with Netforge Solution Sdn. Bhd, a provider frequently linked to malicious infrastructure. Security vendors on VirusTotal flagged the domain, with 21 out of 95 engines detecting it as malicious. The site was registered through Web Commerce Communications Limited, a registrar often exploited for phishing campaigns. Additionally, the page title, Apache Tomcat/9.0.65, may indicate an attempt to exploit vulnerabilities in outdated server software or mislead users about the site's legitimacy. If you visited yxzdw.cn, immediate action is required to mitigate potential risks. First, disconnect the device from the network to prevent further data exfiltration. Run a full scan using updated security software to detect and remove any malware or spyware. Change passwords for all accounts accessed from the compromised device, prioritizing financial, email, and social media platforms. Enable multi-factor authentication where available to add an extra layer of security. Monitor accounts for unauthorized transactions or suspicious activity, and consider placing a fraud alert on credit reports if financial information was entered. Finally, report the domain to relevant cybersecurity authorities or incident response teams to assist in broader threat mitigation efforts.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | yxzdw.cn |
malicious | Sinkholed |
| OpenDNS | yxzdw.cn |
phishing | Phishing Block |
| DigiCert UltraDNS | yxzdw.cn |
malicious | Sinkholed |
| DNS4EU | yxzdw.cn |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Analisis VirusTotal
Bukti & Laporan Eksternal
PD-20260425-34AFA4 Recipient: abuse@cloudbays.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive