mail-jdhlilinlink[.]appwrite[.]network
“Sign In.”
Сводка доказательств
This domain, mail-jdhlilinlink.appwrite.network, poses a credential harvesting threat by impersonating DHL, a global logistics provider. Visitors to the site encounter a fraudulent login page titled 'Sign In,' designed to deceive users into submitting sensitive account details such as usernames, passwords, or shipment tracking credentials. The site exploits trust in the DHL brand to facilitate unauthorized access to personal or corporate data, potentially leading to financial fraud or identity theft. Analysis indicates the domain was registered on March 12, 2026, through the Appwrite registrar and resolves to the IP address 151.101.131.52, hosted on infrastructure belonging to AS54113 (Fastly, Inc.) in the United States. The SSL certificate is issued by Certainly, a provider commonly used for both legitimate and malicious domains. Detection engines on VirusTotal flagged the domain as malicious, with 20 out of 95 security vendors identifying it as a phishing site. Additionally, the domain appears on one security blocklist, further confirming its malicious intent. If you or someone in your organization visited mail-jdhlilinlink.appwrite.network and entered credentials, immediate action is required. First, reset the password for any accounts accessed through the site, using a strong, unique password not reused elsewhere. Enable multi-factor authentication where available to add an extra layer of security. Monitor accounts for unauthorized activity, such as unexpected shipments, password changes, or financial transactions. If payment details were submitted, contact your financial institution to report potential fraud and request a card replacement. Finally, report the incident to your organization’s IT or security team for further investigation and mitigation.
Data Coverage
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | mail-jdhlilinlink.appwrite.network/ |
malware | Detects file containing Telegram Bot API |
| YARAhub by abuse.ch | mail-jdhlilinlink.appwrite.network/favicon.ico |
malware | Detects file containing Telegram Bot API |
| Cloudflare DNS | mail-jdhlilinlink.appwrite.network |
malicious | Sinkholed |
| OpenDNS | mail-jdhlilinlink.appwrite.network |
phishing | Phishing Block |
| DNS4EU | mail-jdhlilinlink.appwrite.network |
malicious | Sinkholed |
| Hagezi Threat Feed | mail-jdhlilinlink.appwrite.network |
malicious | Sinkholed |
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Registration: appwrite.network
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain appwrite.network behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of mail-jdhlilinlink.appwrite.network · checked Apr 23, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание