automatedkycservices[.]com
“Coinbase AML Scan - Secure Compliance for Crypto”
automatedkycservices.com — 未验证. 品牌冒充:Genericcrypto; 诈骗类型:Aml Scam. 证据摘要: VirusTotal 18/94 (BitDefender, Chong Lua Dao, Cluster25, CyRadar, Ermes); URLQuery 4 alerts; URLScan malicious verdict; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 95/100. 注册商: Tucows.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies automatedkycservices.com as an active KYC (Know Your Customer) verification phishing domain designed to deceive users into submitting sensitive identity documents under false pretenses. This fraudulent site mimics legitimate KYC services to harvest personal and financial data, posing a significant risk to individuals and organizations in regulated industries. The threat is classified as generic phishing with an elevated risk level, and it remains operational as of the latest assessment.
This domain was flagged by 17 out of 95 VirusTotal security vendors, indicating substantial malicious activity. It was registered through TUCOWS.COM, CO. on April 09, 2026, and resolves to the IP address 185.95.159.28. Additionally, the domain holds a valid SSL certificate issued by Let's Encrypt and has been detected on 1 security blocklist, further confirming its malicious intent. Despite its recent registration, this domain has already established a presence in threat intelligence feeds, warranting immediate caution from users.
As of this report, automatedkycservices.com remains active and poses an ongoing threat to unsuspecting users. PhishDestroy strongly advises against interacting with this domain or any associated links. Users should verify the authenticity of KYC service providers through official channels and avoid submitting sensitive information to unverified websites. Organizations are encouraged to update their threat intelligence feeds and educate employees on recognizing phishing attempts. If this domain appears in your environment, treat it as a confirmed threat and take appropriate defensive actions, including blocking the domain and IP address at the network perimeter.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | www.automatedkycservices.com |
malicious | Sinkholed |
| DigiCert UltraDNS | www.automatedkycservices.com |
malicious | Sinkholed |
| Cloudflare DNS | www.automatedkycservices.com |
malicious | Sinkholed |
| OpenDNS | www.automatedkycservices.com |
phishing | Phishing Block |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
取证情报
所用技术 · 3 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。