http://tubdv--bdv-2026.replit.app/https://tubdv--bdv-2026.replit.app/HTTP 404
7.0 KB
2.0 KB
0 internal · 2 external
Content-Type: text/html; charset=utf-8All stored response-header names (5)
Content-TypeDateViaAlt-SvcTransfer-Encoding“Banco de Venezuela”
tubdv--bdv-2026.replit.app — Inhalt nicht verfügbar. Markenidentität: Bancodevenezuela; Betrugstyp: Credential Phishing. Zusammenfassung der Beweislage: VirusTotal 10/91 (alphaMountain.ai, BitDefender, ESET, Emsisoft, Fortinet); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 88/100. Registrar: Replit.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
This domain, tubdv--bdv-2026.replit.app, is currently active and has been identified as a generic phishing infrastructure. The domain is registered through Replit Inc. and resolves to the IPv4 address 34.117.33.233. Public threat‑intelligence feeds indicate that the domain is listed on one security blocklist and has been blocked by the PhishDestroy service.
VirusTotal analysis shows that ten of ninety‑one scanned security vendors have flagged the domain as malicious, providing a modest but notable detection signal. No additional metadata such as SSL certificate details, HTTP response codes, or page titles is available in the current intelligence set, and the domain’s nameserver information is reported as NS_NOT_FOUND, limiting further DNS‑level attribution. The limited detection count suggests that the phishing campaign may be in an early deployment stage or employing low‑visibility hosting, yet the presence on a blocklist and multiple vendor detections confirm a non‑trivial risk.
Defenders should add the domain and its associated IP address to network‑level deny lists, monitor DNS queries for repeated resolution attempts, and ensure that endpoint protection solutions are updated to include the observed vendor signatures. Continuous re‑evaluation is advised, as additional indicators such as SSL fingerprints or page content may emerge in subsequent scans.
For the registrable domain replit.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % KonfidenzGoogle Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.
cloud.google.com 100 % KonfidenzCloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com 100 % KonfidenzHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % KonfidenzGoogle PageSpeed Insights — mobile performance audit of tubdv--bdv-2026.replit.app · checked Jul 29, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://tubdv--bdv-2026.replit.app/https://tubdv--bdv-2026.replit.app/Content-Type: text/html; charset=utf-8Content-TypeDateViaAlt-SvcTransfer-EncodingWenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenMelden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenAktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBeobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt