stbl-pass[.]xyz
“STBL PASS — Your Gateway to Premium USST Access”
stbl-pass.xyz — No verificado. Tipo de estafa: Wallet/seed Phishing. Resumen de las pruebas: VirusTotal 5/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Forcepoint ThreatSeeker, Gridinsoft); 1 external blocklist match (ScamSniffer); PhishDestroy score 65/100. Registrador: PDR.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain, stbl-pass.xyz, operates as a fraudulent portal impersonating legitimate USST (User-Secured Service Token) access infrastructure. The site presents itself as a gateway to premium USST services, using the page title 'STBL PASS — Your Gateway to Premium USST Access' to deceive users into entering authentication credentials or sensitive account details. Analysis indicates the infrastructure is designed to harvest login data, likely for subsequent unauthorized access to user accounts or financial exploitation. The use of terms like 'STBL PASS' suggests an attempt to mimic stablecoin or token-related services, increasing the risk for users involved in digital asset management or cryptocurrency transactions.
Technical indicators confirm the malicious nature of this domain. The domain was registered on December 06, 2025, through PDR Ltd. d/b/a PublicDomainRegistry.com, a registrar frequently associated with phishing and fraudulent domains. It resolves to the IP address 188.114.97.3 and is currently flagged by 5 out of 95 security vendors on VirusTotal. Additionally, the domain appears on two security blocklists, including ScamSniffer and PhishDestroy, further validating its classification as phishing infrastructure. The trust score assigned by Gridinsoft is 0/100, reinforcing the elevated risk level associated with this domain.
Users who visited stbl-pass.xyz or interacted with its content should take immediate action to mitigate potential compromise. Those who entered credentials or personal information are advised to change passwords for all associated accounts, particularly those linked to financial services or cryptocurrency platforms. Enable multi-factor authentication where available to add an additional layer of security. Monitor accounts for unauthorized transactions or suspicious activity, and report any anomalies to the respective service providers. If financial data or digital assets were exposed, consider contacting relevant institutions to initiate fraud protection measures. The domain is currently offline, but users should remain vigilant for similar phishing attempts using comparable domain names or branding.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
Evidencias archivadas
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.