Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@microsoft.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
0851wns888[.]com
“验证”
0851wns888.com — 未验证. 证据摘要: VirusTotal 15/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 1 alert; PhishDestroy score 98/100. 注册商: Dynadot.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, 0851wns888.com, is flagged as a high-risk generic phishing threat with active status as of July 12, 2026. The domain was registered on March 04, 2026 through Dynadot LLC and currently resolves to the IP address 20.255.200.238. The page title observed is the Chinese character '验证', which translates to 'verification' or 'validate', a common label used in credential harvesting or authentication-themed phishing pages. No specific brand or scam kit has been identified from the available intelligence, so the exact impersonation target remains unconfirmed. Infrastructure analysis reveals the site employs jQuery, jQuery UI, and jQuery CDN for its frontend functionality, and its SSL certificate is issued by Let's Encrypt, a free certificate authority frequently abused by malicious domains due to low cost and automated issuance. The domain is blocked by two security blocklists, PhishDestroy and BLP-Malware, and has a Gridinsoft trust score of 0 out of 100, indicating a high probability of malicious intent. VirusTotal analysis shows 15 out of 95 security vendors flagging the domain as malicious, and the domain appears in 24 threat intelligence pulses on AlienVault OTX, reflecting broad community detection. Despite these indicators, the exact phishing methodology—whether targeting credentials, financial data, or other sensitive information—is not yet determined from the available page title alone. Defenders should consider this domain as an active threat. The IP address 20.255.200.238 should be blocked at the network perimeter, and any emails or messages referencing this domain should be scrutinized for phishing attempts. Organizations are advised to add the domain to their blocklists and monitor for any associated subdomains or related infrastructure. Given the lack of specific brand or kit details, further analysis through sandboxing or manual inspection of the full page content is recommended to identify the exact lure and victim targeting pattern.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | 0851wns888.com |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 3 identified
Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of 0851wns888.com · checked Jul 12, 2026
证据与外部报告
PD-20260304-8D4122 Recipient: abuse@microsoft.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。