Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is zsq6465940@qq.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
yiaautn[.]cn
“SSS-15”
yiaautn.cn — Прикритий · доступний. Уособлення бренду: Fakeshop; Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLScan malicious verdict; cloaking observed; PhishDestroy score 86/100. Реєстратор: 阿里云计算有限公司(万网).
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain yiaautn.cn, now offline, was a phishing site flagged by 2 out of 91 vendors on VirusTotal. It was hosted on an IP managed by Cloudflare, Inc. in the United States. Despite being taken down, it was initially detected by PhishDestroy in June 2026, highlighting its brief active period.
Registered through 阿里云计算有限公司(万网), the domain utilized an SSL certificate issued by Google Trust Services. This suggests an attempt to appear legitimate and secure to potential victims. The domain's platform risk score of 71 out of 100 indicates a significant threat level during its operational phase.
The presence of yiaautn.cn on a public blocklist, specifically PhishDestroy's, underscores the importance of early detection in combating phishing threats. While the domain is no longer active, its brief existence and the fact that it was flagged by only two vendors on VirusTotal illustrate the challenges in promptly identifying and neutralizing such threats. The use of Cloudflare's infrastructure further complicates detection efforts due to its widespread use by legitimate sites.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260621-E089CF Recipient: zsq6465940@qq.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога