Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@dotwee.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
ariel24[.]vip
“Ariel”
ariel24.vip — 未验证. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 8/91 (alphaMountain.ai, Bfore.Ai PreCrime, CRDF, CyRadar, Forcepoint ThreatSeeker); URLQuery 2 alerts; PhishDestroy score 80/100. 注册商: DotWee.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of ariel24.vip confirms its classification as an active phishing domain designed to harvest user credentials under the pretense of the Ariel brand. The domain was registered on February 2, 2023, through DotWee Limited and remains operational as of July 12, 2026, returning an HTTP 200 status. Infrastructure analysis reveals the site is hosted behind Cloudflare (AS13335), resolving to IP address 104.21.6.96, with nameservers adrian.ns.cloudflare.com and quentin.ns.cloudflare.com. The SSL certificate is issued by Let's Encrypt, a common practice among phishing sites to appear legitimate. Security vendors have detected malicious activity associated with this domain, with 4 out of 95 engines on VirusTotal flagging it as malicious. The domain appears on at least one security blocklist and is actively blocked by PhishDestroy. The Gridinsoft trust score of 0/100 further supports its classification as high-risk. The page title 'Ariel' suggests an attempt to impersonate the legitimate Ariel brand, though no specific phishing kit or exact targeting methodology has been confirmed in available data. What remains uncertain is the exact scope of the campaign, including the volume of victims or the specific credentials being targeted. The use of Cloudflare may obscure additional infrastructure details, such as the origin server or backend hosting provider. Defenders should treat this domain as confirmed malicious and prioritize blocking it at the DNS and network levels. Organizations should also monitor for any internal traffic to this domain, as it may indicate compromised credentials or ongoing phishing attempts. No legitimate business use has been identified for ariel24.vip, and its continued operation warrants immediate action.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
网站配置分析
证据与外部报告
PD-20260623-618F6B Recipient: abuse@dotwee.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。