Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
sheinholidayreward[.]com
“Claim Your Shein Holiday Gift Card!”
sheinholidayreward.com — Неперевірений. Тип шахрайства: Fake Airdrop. Зведення доказів: VirusTotal 6/91 (alphaMountain.ai, Chong Lua Dao, CRDF, CyRadar, Fortinet); Spamhaus DBL_PHISH; PhishDestroy score 68/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy has identified the domain sheinholidayreward.com as a generic phishing site specifically impersonating the popular fashion brand SHEIN. The domain is currently offline, but while active it displayed the page title “Claim Your Shein Holiday Gift Card!” in an attempt to lure victims into providing personal information or credentials. This type of phishing attack preys on consumers expecting seasonal promotions from well-known retailers.
According to intelligence data, sheinholidayreward.com was registered through NiceNIC International Group Co., Limited and was created on February 21, 2026. VirusTotal analysis shows that only 2 out of 95 security vendors flagged the domain as malicious, which is a relatively low detection rate and underscores the importance of user vigilance. The domain resolved to IP address 185.158.133.1 and its SSL certificate was issued by Google Trust Services / WE1. Despite appearing on just one security blocklist, the risk level is elevated due to the brand impersonation and the specific lure of a gift card reward.
As of now, the domain has been taken offline, which may indicate that security measures or takedown efforts have been successfully implemented. However, users should remain cautious of similar variations. PhishDestroy recommends that anyone encountering such a domain or unexpected gift card offers should verify the URL through official brand channels and use PhishDestroy’s threat verification tools before interacting. Additionally, consumers should avoid clicking on unsolicited links and always navigate directly to the official website of the brand offering the promotion.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-16 02:46:38 UTC
Технології · 2 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of sheinholidayreward.com · checked Mar 2, 2026
Докази та зовнішні звіти
PD-20260214-270CF9 Recipient: abuse@nicenic.net Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога