bafkreicbdkvqb7e2flcg4wm6okkyijx5zmut7aamqxeq5s7kmr7syai5xa[.]ipfs[.]dweb[.]link
“Webmail Sign-in”
bafkreicbdkvqb7e2flcg4wm6okkyijx5zmut7aamqxeq5s7kmr7syai5xa.ipfs.dweb.link — No verificado. Suplantación de marca: Generic Email; Tipo de estafa: Credential Phishing. Resumen de las pruebas: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 100 det.; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Registrador: CSC.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
PhishDestroy has identified a brand impersonation threat targeting users of Generic Email services through the domain bafkreicbdkvqb7e2flcg4wm6okkyijx5zmut7aamqxeq5s7kmr7syai5xa.ipfs.dweb.link. This domain is currently offline but was actively used to mimic a Webmail Sign-in page, aiming to harvest login credentials from unsuspecting victims. The threat is classified as brand impersonation due to its deliberate replication of Generic Email's authentication interface.
Technical analysis reveals that the domain resolves to IP address 209.94.90.3 and is secured with a Let's Encrypt SSL certificate (E7). It was created on February 24, 2017, and registered through CSC Corporate Domains, Inc. VirusTotal data shows that 17 out of 95 security vendors flag this domain as malicious, and it appears on 2 security blocklists. These indicators confirm the domain's association with phishing activities, despite its current offline status.
Given that the domain is now offline, the immediate risk is mitigated; however, users should remain vigilant for similar IPFS-based phishing domains that may emerge. PhishDestroy recommends that organizations using Generic Email services implement multi-factor authentication and educate users about recognizing phishing attempts, especially those hosted on decentralized platforms like IPFS. Users who may have interacted with this domain should change their passwords immediately and monitor accounts for unauthorized access. Always verify the authenticity of login pages by checking the URL and using bookmarked links rather than clicking on unsolicited emails.
Señales de seguridad
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
Tecnologías · 5 identified
Popular CSS framework for responsive, mobile-first web development.
Free public CDN for open-source projects, serving files from npm and GitHub.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of bafkreicbdkvqb7e2flcg4wm6okkyijx5zmut7aamqxeq5s7kmr7syai5xa.ipfs.dweb.link · checked Mar 2, 2026
Análisis de la configuración del sitio
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.