Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is 14796548756@139.com.
The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
zhcn-tradingview[.]com[.]cn
“TradingView| ä¸ä¸éèå¾è¡¨ä¸äº¤æå¹³å°”
zhcn-tradingview.com.cn — Неперевірений. Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 2 alerts; Google Safe Browsing flagged; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 100/100. Реєстратор: 温州市中网计算机技术服务有限公司.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies the active domain zhcn-tradingview.com.cn as a credential-phishing site impersonating the TradingView platform. The campaign is classified as a high-risk generic phishing operation and remains live as of the latest intelligence cycle.
This domain was flagged by 15 of 95 VirusTotal vendors and is served from IP address 121.127.246.198. The domain was registered through 温州市中网计算机技术服务有限公司 on April 18, 2026, and carries a Let’s Encrypt SSL certificate. Google Safe Browsing lists the domain under the SOCIAL_ENGINEERING category, indicating active abuse for deceptive purposes.
The threat is assessed as high-risk due to ongoing activity and the domain’s recent registration aligned with known phishing infrastructure. Users should avoid accessing zhcn-tradingview.com.cn and report any observed credential harvesting attempts. Organizations are advised to block the domain at DNS and perimeter levels and to inspect logs for traffic to 121.127.246.198. Immediate action includes updating blocklists with the domain and IP, enabling Safe Browsing protections, and user awareness training to recognize impersonation of TradingView login pages.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | zhcn-tradingview.com.cn |
malicious | Sinkholed |
| DNS4EU | zhcn-tradingview.com.cn |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of zhcn-tradingview.com.cn · checked May 1, 2026
Докази та зовнішні звіти
PD-20260501-30C88E Recipient: 14796548756@139.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога