purolator[.]packageb[.]vip
purolator.packageb.vip — Контент недоступний. Зведення доказів: VirusTotal 7/91 (CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, SOCRadar); Spamhaus DBL_PHISH; PhishDestroy score 71/100. Реєстратор: Gname.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain purolator.packageb.vip was registered through Gname.com Pte. Ltd. on 30 September 2025. Since its creation it has been flagged by multiple security services: PhishDestroy has added it to its blocklist, and it appears on one additional security blocklist. VirusTotal analysis shows that 7 of 91 scanned vendors flagged the domain as malicious, indicating a non‑trivial detection rate. The threat profile is classified as a delivery‑scam operation, and the risk level is elevated with the current status marked as active.
Evidence confirms that the domain is being used in fraudulent activity targeting recipients of parcel deliveries, leveraging the recognizable “Purolator” brand in its sub‑domain. However, no public information is available regarding the hosting IP address, ASN, geographic location, TLS certificate details, HTTP response codes, or page title. Consequently, the full infrastructure footprint remains partially unknown. Defenders should immediately block any network traffic to purolator.packageb.vip at the DNS or firewall level.
Email security gateways should be configured to quarantine messages containing URLs that resolve to this domain, and endpoint protection solutions should be updated with the observed indicator set. Continuous monitoring of threat‑intelligence feeds for additional sightings or expanded blocklist entries is advised, as the limited detection history suggests the campaign may evolve. Organizations that regularly receive parcel notifications should educate users to verify delivery links through official channels rather than clicking embedded URLs.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: packageb.vip
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain packageb.vip behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога