Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is support@namecheap.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
amlpolicyb2c[.]xyz
“AML Guard”
amlpolicyb2c.xyz — 未验证. 品牌冒充:Foundation; 诈骗类型:Investment Scam. 证据摘要: VirusTotal 6/91 (alphaMountain.ai, Bfore.Ai PreCrime, CRDF, Forcepoint ThreatSeeker, Gridinsoft); CF Radar malicious; PhishDestroy score 73/100. 注册商: NameCheap.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain amlpolicyb2c.xyz has been assessed as posing an elevated risk level due to its specific threat type of brand impersonation. The domain impersonates the Foundation, a well-known entity, and has been taken offline as of the latest status update.
Infrastructure analysis reveals that amlpolicyb2c.xyz resolves to the IP address 216.24.57.7 and was registered through NameCheap, Inc. on August 13, 2025. Analysis indicates that the domain appears on 1 security blocklist and has an SSL certificate issued by Google Trust Services / WE1. VirusTotal reports that 2 out of 95 security vendors flag this domain, suggesting a moderate level of detection among security tools. The page title 'AML Guard' further aligns with the impersonation of a financial or regulatory entity, potentially misleading users into trusting the site.
To mitigate the risks associated with brand impersonation, organizations and individuals should remain vigilant and verify the authenticity of websites that claim to represent the Foundation or similar entities. Implementing multi-factor authentication and regularly updating security software can help prevent unauthorized access. Additionally, users should be trained to recognize and report suspicious domain names and page titles that do not match the official communication channels of trusted brands.
安全信号
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 7 identified
Google Sign-In is a secure authentication system that reduces the burden of login for users, by enabling them to sign in with their Google account.
developers.google.com 置信度 100%Stripe offers online payment processing for internet businesses as well as fraud prevention, invoicing and subscription management.
stripe.com 置信度 100%Google Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com 置信度 100%Google Analytics is a free web analytics service that tracks and reports website traffic.
google.com 置信度 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of amlpolicyb2c.xyz · checked Mar 2, 2026
证据与外部报告
PD-1769585525-amlpolicyb2c.xy Recipient: support@namecheap.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。