bafybeid6cqpwazua4i4xa623imlmlva5jxblgcdstxtdefum6hec72lrxi[.]ipfs[.]infura-ipfs[.]io
“Webmail”
bafybeid6cqpwazua4i4xa623imlmlva5jxblgcdstxtdefum6hec72lrxi.ipfs.infura-ipfs.io — No verificado. Resumen de las pruebas: VirusTotal 18/91 (ADMINUSLabs, Criminal IP, BitDefender, Chong Lua Dao, CyRadar); PhishDestroy score 100/100. Registrador: GANDI SAS.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
The domain bafybeid6cqpwazua4i4xa623imlmlva5jxblgcdstxtdefum6hec72lrxi.ipfs.infura-ipfs.io is currently active and classified as a high‑risk generic phishing site. It resolves to 209.94.90.3, an address owned by AS40680 (Protocol Labs) in the United States. Registration was performed through GANDI SAS on January 30, 2020, and the TLS certificate presented is an Amazon RSA 2048 M02 certificate. HTTP requests return a 301 redirect and the page title reported is "Webmail". Technical fingerprinting shows the site leverages IPFS, Python, Django, Cloudflare, and HTTP/3, and it is served via the Infura IPFS gateway. Reputation services assign extremely low trust scores: Gridinsoft 0/100, Scamadviser 1/100, and VirusTotal records 20 of 95 scanners flagging the domain. It is listed on two public blocklists and has been blocked by PhishDestroy and PhishingDB. Nameservers observed are ns-1433.awsdns-51.org, ns-1615.awsdns-09.co.uk, ns-221.awsdns-27.com, and ns-516.awsdns. While the exact payload or credential‑harvesting page has not been publicly captured, the convergence of malicious reputation, redirection behavior, and phishing‑oriented page title indicates a purposeful credential‑stealing operation. Defenders should block the domain and its resolving IP at network perimeter, monitor DNS queries for the domain and its nameservers, and include the observed technology stack in detection rules. Continuous re‑evaluation is advised as further content analysis becomes available.
Señales de seguridad
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 5 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of bafybeid6cqpwazua4i4xa623imlmlva5jxblgcdstxtdefum6hec72lrxi.ipfs.infura-ipfs.io · checked Mar 1, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.