alkhtw[.]shop
“Amazon Sign-In”
alkhtw.shop — 内容不可用. 品牌冒充:Amazon; 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 8/91 (BitDefender, CRDF, CSIS Security Group, CyRadar, G-Data); URLQuery 4 alerts; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 83/100. 注册商: GNAME.COM.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis indicates that alkhtw.shop was associated with generic phishing infrastructure and carried an elevated risk classification prior to being taken offline. Although the domain is no longer active, the observed indicators are consistent with phishing operations designed to collect sensitive user information through deceptive web content and fraudulent interaction flows.
Infrastructure analysis reveals that the domain resolved to IP address 185.255.198.196 and used an SSL certificate issued by Let's Encrypt. Detection telemetry shows that 18 of 95 VirusTotal security vendors flagged the domain, representing a comparatively strong level of security consensus. The domain appeared on 1 security blocklist and was specifically blocked by PhishDestroy. Current status information indicates the infrastructure has been taken offline. Registrar information, domain creation date, and trust score metrics were not available in the supplied intelligence and therefore cannot be independently documented in this assessment.
Despite the offline status, historical exposure should be treated seriously. Users who previously interacted with the domain should review whether credentials, authentication codes, financial information, or other sensitive data were submitted. If any information was entered, password resets and account security reviews are recommended. Security teams should retain indicators including the domain name and IP address 185.255.198.196 in monitoring systems, review historical network and DNS logs for prior access, and maintain detection coverage for related phishing infrastructure. The combination of 18/95 vendor detections and documented blocklist inclusion supports continued defensive awareness even after infrastructure removal.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | alkhtw.shop |
malicious | Sinkholed |
| OpenDNS | alkhtw.shop |
phishing | Phishing Block |
| Cloudflare DNS | alkhtw.shop |
malicious | Sinkholed |
| DNS4EU | alkhtw.shop |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 5 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 置信度 100%Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of alkhtw.shop · checked Jun 25, 2026
证据与外部报告
PD-20260624-C80E1A Recipient: report@abuseradar.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。