id-6362[.]world
id-6362.world — Conteúdo indisponível. Resumo das evidências: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); PhishDestroy score 92/100. Registrador: Web Commerce Communica….
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of id-6362.world, created on 12 June 2026, shows it is currently active and associated with a generic phishing campaign. The domain is registered through Web Commerce Communications Limited operating under the WebNic.cc brand, and uses the authoritative name servers ns100.webnic.cc and ns101.webnic.cc. DNS resolution points to the IPv4 address 216.120.147.200, which is the sole host observed for this domain. The address appears on a single public blocklist and has been added to the PhishDestroy blocklist, indicating that threat‑intel feeds have already flagged it as malicious.
VirusTotal reports that 14 of 91 scanning engines have flagged the domain, providing independent confirmation of its suspicious nature. No additional public intelligence such as Safe Browsing alerts, OTX mentions, or SSL certificate details were available at the time of analysis. The limited age of the domain—less than two months old—combined with its rapid appearance on detection services suggests a deliberately provisioned infrastructure for phishing. Defenders should block DNS resolution to 216.120.147.200 and add id-6362.world to URL filtering policies.
Network monitoring should include outbound connections to the identified IP, and email security gateways should treat any messages referencing this domain as malicious. Because the underlying payload and landing page have not been publicly disclosed, further investigation of the web content is recommended to determine the specific credential‑harvesting technique employed. Continuous re‑evaluation of the domain’s status is advised, as additional indicators such as HTTP response codes or certificate fingerprints may emerge.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo