Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@netsec.com.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
huorong-c[.]com[.]cn
“火绒安全 - 官方极低占用安全软件|官方下载”
huorong-c.com.cn — Непроверенный. Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 8/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, G-Data); URLQuery 2 alerts; PhishDestroy score 78/100. Регистратор: Web Commerce Communica….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, huorong-c.com.cn, poses as an official download page for a security software product, specifically imitating the legitimate site with a similar name. The site is designed to trick users into downloading malicious files under the guise of a trusted security tool. Visitors may unknowingly install malware, spyware, or other harmful payloads instead of the advertised software, leading to system compromise or data theft. Analysis indicates this domain was registered on May 15, 2026, through Web Commerce Communications Limited. It is flagged by 12 out of 95 security vendors on VirusTotal, and appears on two security blocklists. The domain resolves to the IP address 137.59.18.51 and uses a Let's Encrypt SSL certificate, which is commonly exploited by malicious actors to appear legitimate. The page title, "火绒安全 - 官方极低占用安全软件|官方下载," directly mimics the branding of the authentic software, further enhancing its deceptive appearance. If you visited huorong-c.com.cn or interacted with its content, take immediate action to secure your system. Disconnect the device from the internet to prevent further data transmission. Run a full scan using a reputable antivirus or anti-malware tool to detect and remove any installed threats. Check for unauthorized changes to system settings, installed programs, or browser extensions. If you entered any credentials or personal information on the site, change those passwords immediately and monitor accounts for suspicious activity. Consider restoring the system to a known clean state if infections are detected.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | huorong-c.com.cn |
malicious | Sinkholed |
| DNS4EU | huorong-c.com.cn |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 1 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of huorong-c.com.cn · checked Jun 26, 2026
Доказательства и внешние отчеты
PD-20260529-CB06C0 Recipient: abuse@netsec.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание