epostcaribbean[.]cwy[.]teq[.]mybluehost[.]me
“顺丰速运”
epostcaribbean.cwy.teq.mybluehost.me — Контент недоступен. Сводка доказательств: VirusTotal 8/95 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, Fortinet); CF Radar malicious; PhishDestroy score 79/100. Регистратор: Domain.com - Network S….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of epostcaribbean.cwy.teq.mybluehost.me shows a clear phishing profile despite the site being taken offline at the time of review. The domain was registered on October 5, 2016 through Domain.com – Network Solutions, LLC, and is served by Apache HTTP Server on a hosting environment that resolves to IP address 162.214.190.13. The IP is allocated to Unified Layer (AS46606) and resides in the United States. The domain’s DNS configuration uses the authoritative nameservers ns1.mybluehost.me and ns2.mybluehost.me, both operated by the MyBluehost hosting platform. An SSL certificate issued by Let’s Encrypt (R13) is present, indicating that the site attempted to present encrypted communications, a common tactic used to increase victim trust.
The page title returned by the server is "顺丰速运," a reference to a well‑known logistics brand, but no further content analysis is available because the site is offline. Reputation services record extremely low trust scores: Scamadviser rates the domain 1 / 100 and Gridinsoft assigns a score of 0 / 100, reinforcing the malicious assessment. The domain appears on a single security blocklist and has been explicitly blocked by PhishDestroy. VirusTotal scanning identified eight detections out of ninety‑five antivirus engines, providing independent confirmation of malicious behavior.
For defenders, the immediate recommendation is to add the IP address 162.214.190.13 to network deny lists and to block any future DNS resolutions of epostcaribbean.cwy.teq.mybluehost.me. Monitoring for re‑use of the underlying hosting infrastructure or similar domain patterns is advisable, as threat actors often recycle assets after takedown. Continuous probing of the associated nameservers for new subdomains or redeployments should be incorporated into threat‑intel feeds. The combination of low trust scores, multiple vendor detections, and active blocklist entries substantiates a high confidence classification of this domain as a phishing resource.
Сигналы безопасности
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 1 identified
Apache is a free and open-source cross-platform web server software.
httpd.apache.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of epostcaribbean.cwy.teq.mybluehost.me · checked Mar 6, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание