MALICIOUS — CRITICAL
Verifica phishing e sicurezza per dhacl.shop
dhacl[.]
This domain is flagged as a phishing infrastructure impersonating DHL, a global logistics provider.
- VirusTotal
- 9/91
- Blocklists
- No stored match
- Disponibilità
- Contenuto non disponibile · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
dhacl.shop — Contenuto non disponibile (HTTP 502). Riepilogo delle prove: VirusTotal 9/91 (alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar, Forcepoint ThreatSeeker); PhishDestroy score 88/100. Registrar: GNAME.COM.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
This domain is flagged as a phishing infrastructure impersonating DHL, a global logistics provider. Analysis indicates the site presents fraudulent shipping notifications or delivery failure alerts, tricking recipients into entering login credentials or downloading malicious attachments. The threat actors likely exploit urgency and trust in the DHL brand to harvest sensitive information or deploy malware on victim systems. Infrastructure analysis reveals the domain dhacl.shop was registered on June 12, 2026, and is currently offline. It appears in 4 threat intelligence pulses on a major threat intelligence platform and is listed on 1 security blocklist. VirusTotal reports 9 out of 95 security vendors flagging this domain as malicious, with detection names including generic phishing and credential theft indicators. The domain was blocked by enterprise security controls prior to takedown. Users who visited dhacl.shop should immediately revoke any entered credentials, particularly those associated with DHL or other logistics accounts. Scan the device used for access with updated antivirus software to detect potential malware infections. Monitor financial and email accounts for unauthorized activity, as phishing sites often lead to secondary attacks. If credentials were shared, enable multi-factor authentication on all critical accounts to mitigate further risk. Report the incident to internal security teams or relevant authorities for further investigation.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.