goehoq[.]uesbnb[.]com
“Attention Required! | Cloudflare”
Зведення доказів
This domain, goehoq.uesbnb.com, is currently flagged as an active generic_phishing threat targeting Cloudflare infrastructure. Analysis indicates the domain is designed to impersonate Cloudflare's authentication pages, as evidenced by the page title 'Attention Required! | Cloudflare' and the use of legitimate Cloudflare services for obfuscation. The domain remains operational and poses an elevated risk to users who may be deceived into submitting credentials or sensitive information. Infrastructure analysis reveals the domain was registered on March 12, 2026, through Dominet (HK) Limited, a registrar historically associated with high-risk domains. It resolves to the IP address 172.67.155.73, which is part of Cloudflare's network, further complicating detection efforts. The domain appears on one security blocklist and is flagged by 2 of 95 security vendors on VirusTotal, indicating limited but growing detection. Technologies detected include Cloudflare Browser Insights and HTTP/3, suggesting the threat actor is leveraging modern web protocols to evade traditional security measures. The domain's current status is active, and its risk level is classified as elevated due to the combination of Cloudflare impersonation, low detection rates, and the use of legitimate CDN infrastructure. Organizations are advised to block the domain and its associated IP (172.67.155.73) at the network perimeter. Endpoint protection solutions should be updated to include this domain in phishing detection rules. Users should be educated to recognize the 'Attention Required! | Cloudflare' page title as a potential indicator of compromise. Monitoring for similar domains registered through Dominet (HK) Limited or resolving to Cloudflare IPs may help identify related threats.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260312-4436EC- Заголовок збереженої сторінки
- UBNB
- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (US):
18 U.S.C. § 1343 - Wire Fraud
18 U.S.C. § 1030 - Computer Fraud and Abuse Act (CFAA)
15 U.S.C. § 45 - FTC Act (Deceptive Practices)
Federal laws prohibit wire fraud, computer fraud, and deceptive business practices.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | goehoq.uesbnb.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
VirusTotal
0 → 2
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Registration: uesbnb.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain uesbnb.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of goehoq.uesbnb.com · checked Jun 26, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога