bobaoapp[.]com[.]cn
“TronLink钱包官网 - 波宝钱包 | TRON生态去中心化自托管钱包”
bobaoapp.com.cn — Non vérifié. Usurpation de l'identité de la marque : Ethereum; Type d'arnaque : Impersonation. Résumé des preuves: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Spamhaus DBL_SPAM; CF Radar malicious; PhishDestroy score 95/100. Bureau d’enregistrement: 北京新网数码信息技术有限公司.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Analysis of bobaoapp.com.cn as of August 7, 2026, indicates this domain is actively flagged for phishing activity targeting app store users. The domain is registered through 北京新网数码信息技术有限公司, a registrar frequently associated with suspicious infrastructure in China. It currently resolves to the IP address 94.154.43.8, which has been linked to other low-reputation domains in recent threat intelligence reports. At least one security blocklist, PhishDestroy, has explicitly blocked this domain, and 15 of 91 security vendors on VirusTotal have flagged it as malicious, suggesting a pattern of detection across multiple engines.
Infrastructure checks reveal no SSL certificate anomalies or unusual HTTP response codes, but the domain's hosting environment remains a point of concern. The IP 94.154.43.8 is not tied to a major cloud provider, which is atypical for legitimate app distribution platforms. No brand name or specific phishing kit has been confirmed in available metadata, though the domain name itself suggests an attempt to mimic an application storefront. The exact nature of the content hosted on bobaoapp.com.cn is not yet analysed, so it is unclear whether it targets a specific brand or operates as a generic fraudulent app repository.
Defenders should treat this domain as high-risk for phishing. Network-level blocking is recommended based on current detections, and users encountering this domain should avoid downloading any files or entering credentials. Further investigation into the hosting provider and associated domains on 94.154.43.8 may reveal additional compromised infrastructure. Given the elevated risk level and active status, monitoring for changes in detection volume or new blocklist additions is advised.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 6 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org Confiance à 100 %Yoast SEO is a search engine optimisation plugin for WordPress and other platforms.
yoast.com Confiance à 100 %Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org Confiance à 100 %HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of bobaoapp.com.cn · checked Aug 7, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif