Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@alibaba-inc.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
auspost[.]customerservicer[.]cc
“Verify you are human”
auspost.customerservicer.cc — Непроверенный. Сводка доказательств: VirusTotal 21/91 (Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 4 alerts; CF Radar malicious; PhishDestroy score 95/100. Регистратор: Dominet (HK).
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain auspost.customerservicer.cc was registered on July 01, 2026 through Dominet (HK) Limited and remains active as of the report date. It is hosted on nameservers ns7.alidns.com and ns8.alidns.com and resolves to the IP address 47.79.39.190. VirusTotal submissions show that 20 of 91 security vendors have flagged the domain, indicating a notable level of malicious detection. The recent registration date, combined with the use of a reputable DNS provider for malicious purposes, aligns with typical infrastructure patterns observed for phishing campaigns. No publicly available page title, brand target, or detailed payload information has been disclosed, so the exact content served by the site cannot be confirmed at this time. Defenders should treat the domain as high‑risk, add it to blocklists, monitor traffic to the associated IP, and consider restricting outbound connections to the alidns name servers for this domain. Continuous re‑evaluation is advised as further intelligence becomes available.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | auspost.customerservicer.cc |
malicious | Sinkholed |
| OpenDNS | auspost.customerservicer.cc |
phishing | Phishing Block |
| Hagezi Threat Feed | auspost.customerservicer.cc |
malicious | Sinkholed |
| DNS4EU | auspost.customerservicer.cc |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 2 identified
HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчеты
PD-20260717-B0D4F9 Recipient: abuse@alibaba-inc.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание