bybit-login[.]created[.]app
“Fast & Safe Bybit Login Steps for Traders Today”
Evidence Summary
Analysis of the domain bybit-login.created.app, observed on 5 August 2026, indicates it is being used for credential phishing targeting users of the Bybit platform. The domain is registered through the service Created App, and its authoritative nameserver information is not publicly resolvable, reflecting a missing or deliberately concealed NS record. DNS resolution points to the IPv4 address 216.150.16.129, which is the sole hosting endpoint identified. The domain appears on a single security blocklist and has been actively blocked by the PhishDestroy filtering service, confirming that defensive products are already flagging it.
VirusTotal submitted the domain to 91 scanning engines; none reported a detection at the time of analysis, although the lack of a flag does not constitute evidence of legitimacy. The site remains reachable and is classified as active. No SSL certificate data, HTTP status code, or page title information is currently available, leaving the transport‑layer characteristics and content response unknown.
Defenders should add the domain to local deny lists, monitor DNS queries for the associated IP, and enforce URL filtering to prevent end‑user exposure. Network capture of any traffic to the IP can reveal additional indicators such as server banners or request patterns. Continuous re‑evaluation is recommended, as further intelligence—including TLS fingerprint, response headers, or observed login page content—may become available and could alter the risk posture.
Data Coverage
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 11, 2026
10 monitored external feeds No match
Detection timeline
-
First recorded
First stored value: Reachable
Stored Capture
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Registration: created.app
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For the registrable domain created.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies
9 high-confidence technologies identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of bybit-login.created.app · checked Aug 5, 2026
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive