eniexpress[.]com
“EniExpress | Express Delivery, Courier”
Riepilogo delle prove
This domain, eniexpress.com, is assessed as a courier-themed phishing site targeting users through a fraudulent express delivery service facade. Registered on February 21, 2026, through Global Domain Group LLC, the domain currently resolves to IP address 163.61.188.5, hosted on AS153568 (NEW DHAKA HARDWARE) in the United States. The page title, 'EniExpress | Express Delivery, Courier,' aligns with courier or logistics scams, though no specific brand impersonation is confirmed in available data. Infrastructure analysis reveals the use of LiteSpeed web server technology, PHP, Bootstrap, and client-side libraries including jQuery, Popper, Slick, and OWL Carousel, which are common in both legitimate and fraudulent sites. The domain is flagged by one security vendor on a single blocklist and is blocked by PhishDestroy.
Gridinsoft assigns a trust score of 0/100, indicating high suspicion. SSL certification is provided by Let’s Encrypt (R13), a common choice among threat actors due to its low-cost, automated issuance. MX records are configured, which may facilitate phishing email campaigns using the same domain. Nameservers are hosted on dns1.lytehosting.com and dns2.lytehosting.com, a provider previously associated with abusive domains. As of the report date, the domain is offline, though defenders should treat it as a potential resurfacing risk.
No evidence confirms active user compromise or payload delivery, and the exact phishing mechanism remains unanalyzed. Defenders are advised to monitor for re-registration, DNS reactivation, or hosting changes. Blocking the domain and associated IP at network and email security layers is recommended. If the domain reappears, further analysis of HTTP headers, redirects, and payload behavior is necessary to determine the full scope of the threat.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of eniexpress.com · checked Mar 2, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo