Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@alibaba-inc.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
accounts[.]binanceuz[.]co
“Log In | Binance”
accounts.binanceuz.co — Непроверенный. Олицетворение бренда: Binance; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 15/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CyRadar, ESET); URLQuery 3 alerts; URLScan malicious verdict; 1 external blocklist match (Phishunt); PhishDestroy score 95/100. Регистратор: Amazon.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain accounts.binanceuz.co is assessed as having an elevated risk level, specifically for brand impersonation. This domain poses a significant threat to users who may be misled into believing they are interacting with a legitimate Binance service, potentially leading to the compromise of sensitive information or financial loss.
Infrastructure analysis reveals that the domain was created on March 11, 2026, and is registered through Amazon Registrar, Inc. It resolves to the IP address 170.33.96.17, which is located in Singapore and is associated with AS134963 Alibaba Cloud (Singapore) Private Limited. The domain appears on one security blocklist, is flagged by 17 out of 95 security vendors on VirusTotal, and has an SSL certificate issued by Alibaba Cloud Computing Ltd. / Alibaba Cloud GCC R3 AlphaSSL CA 2023. The page title 'Log In | Binance' further reinforces the domain's intent to impersonate the Binance brand, increasing the likelihood of user confusion and potential harm.
To mitigate the risks associated with brand impersonation, users should verify the domain and URL of the Binance website before entering any credentials or financial information. Implementing multi-factor authentication (MFA) can also significantly reduce the likelihood of account takeover. Security teams should monitor for similar domain registrations and block access to known malicious sites. Additionally, reporting the domain to official Binance support and relevant cybersecurity authorities can help in taking further action to protect potential victims.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | accounts.binanceuz.co |
phishing | Phishing Block |
| DigiCert UltraDNS | accounts.binanceuz.co |
malicious | Sinkholed |
| Hagezi Threat Feed | accounts.binanceuz.co |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of accounts.binanceuz.co · checked Mar 24, 2026
Анализ конфигурации сайта
Доказательства и внешние отчеты
PD-20260312-82131C Recipient: abuse@alibaba-inc.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание