dhl[.]servirtual[.]cl
“1 nuevo mensaje”
已存储的观测记录
观测到的标题差异
证据摘要
This domain, dhl.servirtual.cl, poses a brand impersonation threat specifically targeting DHL customers through fraudulent notification pages. The site displays a fabricated message count ('1 nuevo mensaje') to lure recipients into entering sensitive credentials or downloading malicious payloads, commonly associated with credential harvesting or malware distribution campaigns. The infrastructure mimics legitimate logistics tracking portals to exploit user trust in the DHL brand, increasing the likelihood of successful compromise. Analysis indicates the domain was registered on October 16, 2014, through NIC Chile, though the malicious activity appears to be a recent repurposing of existing infrastructure. The domain resolves to IP address 52.27.138.176 (AS16509, Amazon.com, Inc.) and is flagged by 18 out of 95 security vendors on VirusTotal. It appears on two distinct security blocklists (PhishDestroy and PhishingDB) and uses a Let's Encrypt SSL certificate (R12), which while valid, provides no inherent trustworthiness for the content served. The page title '1 nuevo mensaje' serves as a clear technical indicator of the fraudulent notification tactic employed. Users who visited dhl.servirtual.cl should immediately revoke any credentials entered on the site and scan their systems for malware using updated security tools. Network administrators should block the domain and its resolving IP (52.27.138.176) at the perimeter, while monitoring for connections to this infrastructure. Affected individuals should check for unauthorized transactions or account modifications, particularly in systems where DHL-related services are used. The domain's current offline status does not eliminate risk, as the infrastructure may be reactivated or repurposed for future campaigns.
Data Coverage
安全信号
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
VirusTotal
18 → 17
-
VirusTotal
17 → 16
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of dhl.servirtual.cl · checked Mar 1, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控