Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
chromeuk-google[.]com[.]cn
“谷歌浏览器 - 网页渲染引擎 | 硬件加速 | 流畅播放”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
The domain chromeuk-google.com.cn was registered on March 09, 2026 through Web Commerce Communications Limited and is presently active. Technical analysis shows the site resolves to IP address 188.114.97.3, which belongs to AS13335 Cloudflare, Inc., located in the United States. The domain is served behind Cloudflare, employing Cloudflare Browser Insights, Cloudflare services, and HTTP/3, and returns an HTTP 301 redirect. The TLS certificate is issued by Let’s Encrypt (E7). Nameservers are damon.ns.cloudflare.com and paislee.ns.cloudflare.com. The page title presented by the site is “谷歌浏览器 - 网页渲染引擎 | 硬件加速 | 流畅播放,” indicating an attempt to associate with Google’s Chrome browser. The threat classification is a tech support scam that impersonates Google, with a Gridinsoft trust score of 0/100. VirusTotal reports four of ninety‑five security vendors flag the domain as malicious. The domain appears on three blocklists, specifically PhishDestroy, MetaMask, and SEAL. While the site’s content has not been directly inspected, the combination of brand impersonation, low trust score, malicious vendor detections, and blocklist listings suggests a high‑risk profile. Defenders should block the domain at network perimeter, update DNS filtering rules, monitor for connections to the associated IP, and consider adding the domain to internal blocklists. Further investigation of the site’s payload and any associated command‑and‑control infrastructure is recommended to fully assess the scope of the campaign.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260309-DF9A11- Заголовок сохранённой страницы
- 谷歌浏览器 - 网页渲染引擎 | 硬件加速 | 流畅播放
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | chromeuk-google.com.cn |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
8 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
0 → 1
-
VirusTotal
1 → 4
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание