85jfd1d[.]baollll2[.]cc
“随心而为,随性而活”
85jfd1d.baollll2.cc — Non vérifié. Résumé des preuves: VirusTotal 16/91 (ADMINUSLabs, Criminal IP, BitDefender, CyRadar, ESET); CF Radar malicious; PhishDestroy score 95/100. Bureau d’enregistrement: NameSilo.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
PhishDestroy assesses 85jfd1d.baollll2.cc as an elevated risk domain due to its classification as a generic phishing threat. This domain was designed to deceive users into divulging sensitive information, such as login credentials or personal data, through fraudulent means. The site is currently offline, but its malicious intent is clear from the available intelligence.
Technical indicators paint a damning picture. VirusTotal data shows that 18 out of 95 security vendors flag this domain as malicious, a strong consensus among the security community. The domain was registered on February 21, 2026, through NameSilo, LLC, a registrar sometimes associated with questionable domains. It resolves to IP address 45.145.72.188 and uses an SSL certificate from Let's Encrypt (R12), which is common among both legitimate and malicious sites. The page title was "随心而为,随性而活" (Chinese for "Follow your heart, live as you please"), which may be an attempt to appear benign. The domain appears on one security blocklist, further corroborating its malicious nature.
Users who encountered this domain should take immediate precautions. Since it is a generic phishing threat, anyone who entered credentials or personal information on the site should change those credentials immediately on the legitimate services they use. It is also advisable to enable two-factor authentication on all accounts where possible. Monitor accounts for any suspicious activity and consider running a security scan on any device that accessed the domain. PhishDestroy recommends blocking this domain at the network level to prevent future access, even though it is currently offline, as it may become active again under a different IP or registrar.
Renseignements sur la sécurité réseau Registrar context
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 1 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org Confiance à 100 %Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of 85jfd1d.baollll2.cc · checked Mar 2, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif