info[.]fast-shipping[.]it
证据摘要
info.fast-shipping.it was registered on June 03, 2026 and resolves to the IPv4 address 3.248.19.132, which belongs to an Amazon Web Services EC2 instance in the eu-west-1 region of Ireland. The rapid registration and use of cloud infrastructure are consistent with a short-lived campaign designed to host malicious web content.
A direct HTTP request returns status code 200, indicating that a web server is actively serving pages. The site presents a Sectigo Limited / Sectito Public Server Authentication CA DV R36 TLS certificate, a publicly trusted certificate that masks the underlying intent. Reputation checks show the domain on a single security blocklist, a Gridinsoft trust score of 0 out of 100, and seven of ninety-five VirusTotal scanners flagging it as malicious. PhishDestroy also lists the domain as blocked.
The content served by the site has not been publicly disclosed, and no specific phishing landing pages or credential-harvesting forms have been captured in open-source feeds. Consequently, the exact branding, lure technique, or victim profile targeted by this domain remain unknown. The limited number of detections suggests either a very recent deployment or a low-volume operation that has not yet been widely shared.
Defenders should treat info.fast-shipping.it as a high-risk indicator. Immediate actions include adding the domain and its resolved IP address to outbound allow-list blocks, updating DNS filtering policies, and enabling TLS inspection to intercept any encrypted traffic. Continuous monitoring for new samples, URL redirects, or related domains sharing the same AWS subnet is advised. Incident response teams should also review email logs for any messages referencing “fast‑shipping” or similar phrasing, as the domain name hints at a logistics-related phishing lure.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控