fideii-tyl[.]cyou
“Access Denied”
fideii-tyl.cyou — Контент недоступний. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25, CRDF); URLQuery 2 alerts; Google Safe Browsing flagged; Spamhaus DBL_PHISH; PhishDestroy score 100/100. Реєстратор: GLOBAL ASSET DOMAINS.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, fideii-tyl.cyou, is identified as a high-risk phishing infrastructure designed to impersonate Fidelity Investments, a major financial services provider. Analysis indicates the domain is likely part of a credential harvesting campaign, targeting users through social engineering tactics to capture sensitive login information. While no specific drainer kit has been confirmed, the domain's structure and naming convention suggest a focus on financial fraud, consistent with known phishing operations targeting investment platforms. Infrastructure analysis reveals the following technical indicators: the domain was registered on July 8, 2026, through GLOBAL ASSET DOMAINS INC, and currently resolves to the IP address 185.177.239.65. Security vendor detection on VirusTotal stands at 12/95, with Google Safe Browsing flagging the domain under the category SOCIAL_ENGINEERING. The domain appears on one security blocklist and is actively blocked by InversionDNS. Additionally, it employs a Let's Encrypt SSL certificate, which, while providing encryption, is frequently exploited by threat actors to lend an appearance of legitimacy to malicious sites. As of the latest assessment, fideii-tyl.cyou remains active, posing an ongoing risk to users who may be deceived into entering credentials. Response actions by security providers have included blocklisting and DNS-level blocking, but the domain's continued operation indicates persistent threat activity. Organizations and individuals are advised to implement network-level blocking for the domain and its associated IP address, while users should be educated on recognizing phishing attempts, particularly those impersonating financial institutions. Given the domain's high-risk classification and active status, continuous monitoring and proactive mitigation measures are recommended to prevent potential credential compromise.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | fideii-tyl.cyou |
phishing | Phishing Block |
| Hagezi Threat Feed | fideii-tyl.cyou |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ЗОНА SHORTDOT · ПУБЛІЧНІ ДОКАЗИ
.cyou
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 9 identified
Apache is a free and open-source cross-platform web server software.
httpd.apache.org 100% впевненостіQualtrics is an cloud-based platform for creating and distributing web-based surveys.
www.qualtrics.com 100% впевненостіOneTrust is a cloud-based data privacy management compliance platform.
www.onetrust.com 100% впевненостіMicrosoft Advertising is an online advertising platform developed by Microsoft.
ads.microsoft.com 100% впевненостіLaunchDarkly is a continuous delivery and feature flags as a service platform that integrates into a company's current development cycle.
launchdarkly.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100% впевненостіClickTale is a SaaS solution enabling organisations to gain visual in-page analytics.
www.clicktale.com 100% впевненостіAkamai is global content delivery network (CDN) services provider for media and software delivery, and cloud security solutions.
akamai.com 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of fideii-tyl.cyou · checked Jul 10, 2026
Докази та зовнішні звіти
PD-20260712-B08D9B Recipient: abuse@altawk.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога