casebjfnle[.]com
“Инновационная платформа для истинных ценителей цифровых коллекций!”
This domain, casebjfnle.com, is identified as a credential theft operation designed to harvest sensitive login credentials through fraudulent financial service portals. Analysis indicates the site employs sophisticated impersonation techniques, mimicking legitimate banking or payment platforms to deceive users into entering account details. The infrastructure is engineered to capture and exfiltrate credentials, which are then likely used for unauthorized account access or sold on underground markets. The threat is particularly concerning due to its targeted approach, focusing on high-value financial data rather than generic spam or malware distribution. Infrastructure analysis reveals concrete indicators of malicious activity. The domain was registered on March 27, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-risk domains. It resolves to the IP address 104.21.32.228 and appears on one security blocklist, with two out of ninety-five security vendors on VirusTotal flagging it as malicious. Additionally, the domain is referenced in a single threat intelligence pulse on AlienVault OTX, further corroborating its association with credential theft campaigns. The Gridinsoft trust score of 0/100 underscores the domain's lack of legitimacy and high-risk classification. Users who visited casebjfnle.com or entered credentials on the site should take immediate action to mitigate potential compromise. First, change passwords for any accounts accessed or entered on the domain, prioritizing financial and email accounts. Enable multi-factor authentication (MFA) where available to add an additional layer of security. Monitor accounts for unauthorized transactions or suspicious activity, and report any anomalies to the respective financial institutions. If personal or financial data was submitted, consider placing a fraud alert or credit freeze with major credit bureaus to prevent identity theft. Finally, scan the device used to access the site for malware or unauthorized software, as credential theft sites often deploy secondary payloads to maintain persistence.
سجل البلاغ المرسل
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260327-E91FE9- عنوان الصفحة الملتقطة
- Инновационная платформа для истинных ценителей цифровых коллекций!
- ملف PDF
- دليل PDF
الأساس القانوني
النص الكامل للدليل
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
استخبارات أمن الشبكات Registrar context
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
10 مصادر · تمت المزامنة في 10/08/2026
المخطط الزمني للاكتشاف
الملاحظات المحفوظة بترتيب زمني.
-
VirusTotal
VirusTotal: 3 ← 2
-
التوفر
التوفر: رُصد أول مرة بالحالة dns_inactive
f93a11f87e4d -
التوفر
التوفر: dns_inactive ← unknown
c12c2e6772ba -
التوفر
التوفر: unknown ← dns_inactive
7025ba11b3a0 -
التوفر
التوفر: dns_inactive ← inactive
30709d31eb39 -
التوفر
التوفر: inactive ← dns_inactive
f52d526b76a1 -
التوفر
التوفر: dns_inactive ← unknown
f7bd6646d532 -
التوفر
التوفر: unknown ← inactive
6a54c908e35f -
التوفر
التوفر: inactive ← unknown
8fbbbed934e3 -
التوفر
التوفر: unknown ← dns_inactive
6dfe9145995c
عرض الكل (7)
-
التوفر
التوفر: dns_inactive ← inactive
03dd23da5d54 -
التوفر
التوفر: inactive ← dns_inactive
641ed81dc4d5 -
التوفر
التوفر: dns_inactive ← unknown
740b86eba1b5 -
التوفر
التوفر: unknown ← inactive
6fb40269d418 -
التوفر
التوفر: inactive ← unknown
b3a19580973a -
التوفر
التوفر: unknown ← dns_inactive
d0b7046e8c2f -
التوفر
التوفر: dns_inactive ← inactive
4aeef93e9341
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of casebjfnle.com · checked Jun 26, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب