Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 7 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
dhlexpress[.]ee
“DHL EXPRESS | Ekspress saadetis välismaale, online saatmise arvutamine”
Сводка доказательств
The domain dhlexpress.ee is a phishing site engaged in brand impersonation of the shipping company DHL, specifically targeting users with a fake DHL Express service page. This domain poses an elevated risk as a shipping scam designed to steal personal or financial information. The site is currently taken offline, but its past activity indicates it was not safe and should be considered a scam.
The domain dhlexpress.ee was registered on December 4, 2020, through Key-Systems GmbH and resolves to IP address 81.95.110.236 located in the Czech Republic (AS25234 ACTIVE 24, s.r.o.). VirusTotal flags it with 1 detection out of 95 vendors, including alphaMountain.ai, and it appears on 1 security blocklist (PhishDestroy). Google Safe Browsing did not flag the site. The SSL certificate was issued by Let's Encrypt / E8. The page title observed was 'DHL EXPRESS | Ekspress saadetis välismaale, online saatmise arvutamine'. The domain has been found in 3 threat intelligence pulses on AlienVault OTX, and its Scamadviser trust score is 30 out of 100. Technologies detected include YouTube, Stimulus, Nginx, OneTrust, and Google Tag Manager. The nameservers are ns1.f5clouddns.com and ns2.f5clouddns.com.
Since dhlexpress.ee was a phishing site for credential or login theft, users who may have interacted with it should immediately change passwords for any accounts entered on the page and enable two-factor authentication where possible. Monitor financial accounts for unauthorized activity and report the incident to local authorities or cybersecurity bodies. The domain has been taken offline, but vigilance against similar brand impersonation attempts is advised.
Снимок отправленных доказательств
- Отправлено
- Записи журнала
- 1
- ID дела
PD-20260104-23EBBE- Заголовок сохранённой страницы
- DHL EXPRESS | Ekspress saadetis välismaale, online saatmise arvutamine
- PDF-файл
- PDF с доказательствами
Правовое основание
Полный текст доказательств
This domain violates multiple sections of your Acceptable Use Policy (AUP) and Terms of Service (TOS):
🔴 AUP VIOLATIONS:
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Malicious Use: Abuse of your infrastructure for criminal purposes
⚖ APPLICABLE LAWS (Unknown):
• International Anti-Cybercrime Regulations
• Budapest Convention on Cybercrime
• Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
📋 REGULATORY CONTEXT (Unknown):
International cybercrime frameworks require documented abuse response. Systematic inaction may affect business relationships with payment processors and security vendors.
IMMEDIATE ACTION REQUIRED: This evidence-backed report demonstrates clear violations requiring suspension per your own policies.
Continued hosting exposes your organization to regulatory scrutiny, reputational damage, and potential legal liability.
Note: This domain has been publicly documented in threat intelligence feeds.
Your response (or lack thereof) is being monitored by security researchers and may affect trust scores used by
payment processors, CDN providers, and enterprise security vendors.
Data Coverage
Сигналы безопасности
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
1 → 3
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of dhlexpress.ee · checked Mar 2, 2026
Анализ конфигурации сайта
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание