benqi[.]cc
“Benqi”
साक्ष्य सारांश
The domain benqi.cc was registered on 21 February 2026 through Immaterialism Limited. It is currently active and resolves to the IPv4 address 37.27.135.61, which belongs to the Hetzner Online GmbH data centre in Finland (AS24940). The authoritative name servers are 1-you.njalla.no, 2-can.njalla.in, and 3-get.njalla.fo, all hosted by the njalla service. An HTTPS connection to benqi.cc presents a low‑trust certificate identified as R12, and the web server returns HTTP status 200. The landing page title is simply “Benqi”, matching the domain name and suggesting an attempt to mimic a legitimate brand. Gridinsoft assigns a trust score of 31 out of 100, indicating a high likelihood of malicious intent. The site is classified as a brand‑impersonation campaign targeting multiple brands, listed under the generic target “across”. It is tagged as a seed_phish operation and has been added to the PhishDestroy blocklist, with one additional security blocklist reference. VirusTotal analysis shows two out of ninety‑five scanners flagging the domain as malicious, reinforcing the suspicion. Defenders should proactively block DNS resolution for benqi.cc and any subdomains, enforce TLS inspection to capture the malicious payload, and consider sinkholing the associated IP address. Continuous monitoring of the njalla name servers is advised, as the infrastructure could be repurposed for other campaigns. At present, the content observed is limited to the generic “Benqi” landing page; further payloads may be delivered after user interaction.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।