VirusTotal
14 / 91
“SEND USDT”
The domain testbep20.online is identified as a generic phishing site that is currently offline. It was registered through GoDaddy.com, LLC and has been detected engaging in activities typical of phishing schemes. The domain does not appear to impersonate any specific brand directly but follows patterns common in phishing operations targeting users indiscriminately. Its resolution to IP address 77.245.76.110 suggests it was hosted on a server with potential vulnerabilities or involvement in malicious activities.
Analysis of the domain shows it was created on January 18, 2026, and has been flagged by 14 out of 95 security vendors on VirusTotal, indicating a substantial level of threat recognition across cybersecurity platforms. The domain is currently listed on two security blocklists, reinforcing the elevated risk level it presents. It has been actively blocked by entities including PhishDestroy and ScamSniffer, highlighting the concerted efforts to mitigate its threat potential. The detection and listing data suggest this domain posed a considerable threat during its active period, warranting continued monitoring for related activities or domains.
Given its current offline status, testbep20.online poses no immediate risk to users. However, cybersecurity teams should ensure network defenses are updated to block any potential reactivation or similar emerging threats. Regularly updating phishing domain databases and employing real-time threat intelligence platforms can help detect and prevent future threats. Users are advised to remain cautious, verifying the legitimacy of any unexpected communications and avoiding interactions with suspicious domains.
Full extracted values, their blockchain and collection source. An address found in page content does not establish who controls it.
0x1824b4c06c90B28a2D34D7898a30ecbFcB5B87B2Format validated · Domain analysis0x55d398326f99059fF775485246999027B3197955Format validated · Domain analysis0x8bc152da45f60b40b52ffa4cc0cdd13ac236b8a3Format validated · Domain analysisIoC extraction recorded 2026-08-01 04:09:50 UTC
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
Scanner note: unavailable: raw=connection_error; http=0; via=http_proxy; error=SOCKSHTTPConnectionPool(host='testbep20.online', port=80): Max retries exceeded with url: / (Caused by NewConnectionErro
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
ns09.domaincontrol.comns10.domaincontrol.comLocation describes the IP network.
14 recorded events. These records describe collected evidence, outgoing notifications and publication; they do not confirm a complete investigation or a takedown.
We scan suspicious URLs, inspect public results and send evidence through the appropriate abuse-reporting channels. The dated events above show what is recorded for this domain. The directory below explains the wider workflow.
Capture the rendered page, requests and visible infrastructure.
Compare the available engine results and retain the analysis timestamp.
Check whether Google currently lists the URL as unsafe.
Inspect a public scan and its recorded network and classification data.
Look for indicator references and related community intelligence.
Compare archived captures and preserve historical context.
Look for matching indicators and associated threat records.
Inspect certificate records and related hostnames.
Compare security resolver responses and record observed blocking.
Inspect the public DNS, TLS, HTTP and technology surface.
Security services used for scanning, reputation checks and reporting are listed below. A service being listed is not evidence that it received, accepted or acted on this particular domain. Recorded submissions appear in the notification history above.
Reported by 1 community member, first seen May 30, 2026
PD-20260530-A1E33F Recipient: abuse@iomart.com Policy Violations: Acceptable Use Policy (AUP): The domain testbep20.online is actively engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception. Terms of Service (TOS): The continued operation of this domain violates your TOS, which reserves the right to suspend or terminate services for any activities that are illegal or harmful to others. Applicable Laws (Unknown): Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computers and networks, which is applicable if the phishing activities target U.S. citizens. Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities through electronic communications, which is relevant given the nature of the phishing activities associated with this domain. Anti-Phishing Act: This legislation aims to combat phishing and related online fraud, making it illegal to use deceptive means to solicit sensitive information. Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny. Non-compliance with your own policies and applicable laws could result in significant penalties.
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Select your country to get official cybercrime contacts, or create a complaint draft →.
Template-based draft · optional AI wording assistance requires separate consent
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowSubmit suspicious domains to our threat database — protect the community
ReportRecent phishing reports and observed availability changes
MonitorMonitor live threats or contest this listing if you believe it's a false positive