Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
cloud-img[.]net
cloud-img.net 网络钓鱼与安全检查
“Вход в систему”
cloud-img.net — 最后已知的活跃状态 (HTTP 200). 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 14/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); PhishDestroy score 100/100. 注册商: NiceNIC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies cloud-img.net as a recently activated domain engaged in generic phishing operations, specifically hosting a crypto drainer kit designed to siphon cryptocurrency from unsuspecting victims. This domain does not impersonate a specific brand but instead leverages a generic 'cloud' theme to appear legitimate, likely targeting users expecting file storage or cloud service integrations. The infrastructure behind this campaign relies on a simple yet effective lure, exploiting trust in cloud-related services to deliver its malicious payload. This domain, cloud-img.net, exhibits several technical indicators that warrant heightened scrutiny. Registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on August 18, 2024, the domain resolves to IP address 188.114.97.3 and operates under a Google Trust Services SSL certificate, which may lend it an air of legitimacy. Despite this, VirusTotal reports a concerning detection rate of only 2 out of 95 security vendors, highlighting its potential to evade traditional defenses. As of the latest assessment, this domain remains unlisted on major blocklists, further increasing the risk of successful phishing attempts. As of the current investigation, cloud-img.net remains active and poses an elevated risk to users. PhishDestroy has flagged this domain for immediate attention, and users are strongly advised to avoid interacting with it until further validation can be performed. Immediate response actions include blocking the domain at the network level and updating security controls to flag any connections to 188.114.97.3. The remaining risk is significant, given the domain's low detection rate and the absence of widespread blocklist coverage. Users should exercise extreme caution when encountering cloud-img.net or similar domains and verify their legitimacy through trusted sources like PhishDestroy before proceeding with any actions.
网络安全情报 Registrar context
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 02:40:00 UTC
所用技术 · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of cloud-img.net · checked Mar 28, 2026
证据与外部报告
PD-20260327-F363E5 Recipient: abuse@nicenic.net, abuse@verisign-grs.com, compliance@icann.org 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。