test.baoyicloud.com - suspicious URL scan, 21 Aug 2026
MalwareAnalyzer by Cyble scanned test.baoyicloud.com and returned a suspicious verdict (score 33), categorised as phishing. The page resolved to 27.42.167.52 on China Unicom Guangdong province network in CN. The domain was registered 1426 days ago through Alibaba Cloud Computing Ltd. d/b/a HiChina (www.net.cn). 1 domain and 1 IP were contacted, over 1 HTTP request. This is a point-in-time observation from 21 Aug 2026; the page may have changed since.
Scan result
- Verdict: suspicious (score 33) · Confidence 39%
- Scanned URL:
https://test.baoyicloud.com/ - Domain: test.baoyicloud.com · IP: 27.42.167.52 · AS17816 · CN
- Server: Microsoft-IIS/10.0
- Page title: 502 - Web 服务器在作为网关或代理服务器时收到了无效响应。
- HTTP status: 502 · text/html
- Registrar: Alibaba Cloud Computing Ltd. d/b/a HiChina (www.net.cn) · domain age 1426 days · created 2022-09-24
- TLS issuer: C=AT, O=ZeroSSL GmbH, CN=ZeroSSL RSA DV SSL CA 2 · valid to Nov 18 23: · subject CN=test.baoyicloud.com
- HTTP requests captured: 1
- Scan tier: standard · observed 2026-08-21 01:38:07 UTC
Antivirus & YARA (0 of 47 engines)
No engine flagged this page's content.
Categories
- phishing
Why this verdict
- Domain impersonates icloud (combosquat)
- Certificate issued < 48h ago
Detected technologies
- Microsoft IIS
- ASP.NET
Contacted infrastructure
- 27.42.167.52 - AS17816 China Unicom Guangdong province network (China)
Observed indicators
- test.baoyicloud.com
- 27.42.167.52
- https://test.baoyicloud.com/
Questions about test.baoyicloud.com
- Is test.baoyicloud.com safe?
- No. MalwareAnalyzer scanned test.baoyicloud.com on 21 Aug 2026 and returned a suspicious verdict with a score of 33 out of 100, categorised as phishing. Treat it as hostile until it is re-checked.
- How was test.baoyicloud.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of test.baoyicloud.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan