Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 11 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
cvb45rg[.]shop
“首页”
Сводка доказательств
Analysis of cvb45rg.shop, observed on August 02, 2026, indicates that the domain is currently active and under investigation for generic phishing activity. The domain was submitted to VirusTotal and examined by 91 antivirus and URL‑reputation vendors; none of the scanners reported a malicious finding at the time of the scan. While the absence of detections does not imply that the site is benign, the lack of positive flags is a data point that must be weighed against other indicators. The domain is listed on a single security blocklist and is actively blocked by the PhishDestroy mitigation service, suggesting that at least one threat‑intelligence feed has classified the host as hostile.
No additional information on registrar details, hosting provider, autonomous system number, geographic location, SSL certificate metadata, HTTP response codes, or Safe Browsing status is available in the current intel set. Likewise, the page title and any brand‑specific references have not been disclosed, leaving the visual content and targeted victim profile unverified. Consequently, the confidence in attributing a particular phishing kit or campaign to the domain remains limited. Defenders should continue to monitor cvb45rg.shop for changes in its reputation profile.
Immediate mitigation actions include adding the domain to blocklists, enforcing URL filtering on perimeter devices, and employing user‑education controls that warn against unsolicited login prompts that may originate from newly observed domains. Re‑scanning the domain with sandbox and URL‑analysis tools on a regular cadence is recommended to capture any future malicious payloads or redirects. Incident response teams should also correlate internal logs for any outbound connections to this host, as such traffic could indicate compromised user interaction.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260802-4E9DF7- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Первая запись
Первое сохранённое значение: Доступен
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание