mail-jdhlilinlink[.]appwrite[.]network
“Sign In.”
Riepilogo delle prove
This domain, mail-jdhlilinlink.appwrite.network, poses a credential harvesting threat by impersonating DHL, a global logistics provider. Visitors to the site encounter a fraudulent login page titled 'Sign In,' designed to deceive users into submitting sensitive account details such as usernames, passwords, or shipment tracking credentials. The site exploits trust in the DHL brand to facilitate unauthorized access to personal or corporate data, potentially leading to financial fraud or identity theft. Analysis indicates the domain was registered on March 12, 2026, through the Appwrite registrar and resolves to the IP address 151.101.131.52, hosted on infrastructure belonging to AS54113 (Fastly, Inc.) in the United States. The SSL certificate is issued by Certainly, a provider commonly used for both legitimate and malicious domains. Detection engines on VirusTotal flagged the domain as malicious, with 20 out of 95 security vendors identifying it as a phishing site. Additionally, the domain appears on one security blocklist, further confirming its malicious intent. If you or someone in your organization visited mail-jdhlilinlink.appwrite.network and entered credentials, immediate action is required. First, reset the password for any accounts accessed through the site, using a strong, unique password not reused elsewhere. Enable multi-factor authentication where available to add an extra layer of security. Monitor accounts for unauthorized activity, such as unexpected shipments, password changes, or financial transactions. If payment details were submitted, contact your financial institution to report potential fraud and request a card replacement. Finally, report the incident to your organization’s IT or security team for further investigation and mitigation.
Data Coverage
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | mail-jdhlilinlink.appwrite.network/ |
malware | Detects file containing Telegram Bot API |
| YARAhub by abuse.ch | mail-jdhlilinlink.appwrite.network/favicon.ico |
malware | Detects file containing Telegram Bot API |
| Cloudflare DNS | mail-jdhlilinlink.appwrite.network |
malicious | Sinkholed |
| OpenDNS | mail-jdhlilinlink.appwrite.network |
phishing | Phishing Block |
| DNS4EU | mail-jdhlilinlink.appwrite.network |
malicious | Sinkholed |
| Hagezi Threat Feed | mail-jdhlilinlink.appwrite.network |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Registration: appwrite.network
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain appwrite.network behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of mail-jdhlilinlink.appwrite.network · checked Apr 23, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo