epostcaribbean[.]cwy[.]teq[.]mybluehost[.]me
“顺丰速运”
epostcaribbean.cwy.teq.mybluehost.me — 콘텐츠를 사용할 수 없음. 증거 요약: VirusTotal 8/95 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, Fortinet); CF Radar malicious; PhishDestroy score 79/100. 등록기관: Domain.com - Network S….
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Analysis of epostcaribbean.cwy.teq.mybluehost.me shows a clear phishing profile despite the site being taken offline at the time of review. The domain was registered on October 5, 2016 through Domain.com – Network Solutions, LLC, and is served by Apache HTTP Server on a hosting environment that resolves to IP address 162.214.190.13. The IP is allocated to Unified Layer (AS46606) and resides in the United States. The domain’s DNS configuration uses the authoritative nameservers ns1.mybluehost.me and ns2.mybluehost.me, both operated by the MyBluehost hosting platform. An SSL certificate issued by Let’s Encrypt (R13) is present, indicating that the site attempted to present encrypted communications, a common tactic used to increase victim trust.
The page title returned by the server is "顺丰速运," a reference to a well‑known logistics brand, but no further content analysis is available because the site is offline. Reputation services record extremely low trust scores: Scamadviser rates the domain 1 / 100 and Gridinsoft assigns a score of 0 / 100, reinforcing the malicious assessment. The domain appears on a single security blocklist and has been explicitly blocked by PhishDestroy. VirusTotal scanning identified eight detections out of ninety‑five antivirus engines, providing independent confirmation of malicious behavior.
For defenders, the immediate recommendation is to add the IP address 162.214.190.13 to network deny lists and to block any future DNS resolutions of epostcaribbean.cwy.teq.mybluehost.me. Monitoring for re‑use of the underlying hosting infrastructure or similar domain patterns is advisable, as threat actors often recycle assets after takedown. Continuous probing of the associated nameservers for new subdomains or redeployments should be incorporated into threat‑intel feeds. The combination of low trust scores, multiple vendor detections, and active blocklist entries substantiates a high confidence classification of this domain as a phishing resource.
보안 신호
네트워크 보안 인텔리전스
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 1 identified
VirusTotal 분석
보관된 증거
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of epostcaribbean.cwy.teq.mybluehost.me · checked Mar 6, 2026
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.