expresscouriersevices[.]com
“Express Courier Services - Express Courier Services”
Kaydedilmiş tespit
Gizleme uyarısı
- Gizleme türü
content_divergence- Gizleme puanı
- 1/6
Kanıt özeti
The domain expresscouriersevices.com is a confirmed phishing site engaged in brand impersonation, specifically targeting Google. It poses an elevated risk by mimicking legitimate services to deceive users into disclosing sensitive information, though no crypto drainer kit was detected. As of the latest verification, the site has been taken offline.
Technical analysis shows that expresscouriersevices.com was flagged by 2 of 95 VirusTotal security vendors, including Fortinet and Kaspersky, while Google Safe Browsing did not flag it. The domain appears on 1 security blocklist (PhishDestroy) and was registered through Dynadot LLC on February 19, 2025. It resolved to the IP address 163.61.188.89, hosted on AS153568 NEW DHAKA HARDWARE in the US, with an SSL certificate issued by Let's Encrypt (R13). The observed page title was 'Express Courier Services - Express Courier Services,' and technologies detected include PHP, Apache HTTP Server, and jQuery. The domain's Gridinsoft trust score is 0/100, and its nameservers are ns1.capricloud.com and ns2.capricloud.com.
Users who interacted with expresscouriersevices.com should immediately change any passwords entered on the site, enable two-factor authentication (2FA) on all accounts, and monitor for unauthorized activity. Report the domain to Google Safe Browsing, the registrar (Dynadot LLC), and platforms like PhishTank or the Anti-Phishing Working Group (APWG). If financial or login credentials were exposed, contact relevant institutions to secure accounts and watch for fraudulent transactions.
Data Coverage
Güvenlik Sinyalleri
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Tespit zaman çizelgesi
-
Alan adı durumu
Erişilebilir → Erişilemiyor
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
6 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of expresscouriersevices.com · checked Mar 2, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin