9bferon[.]com
Pemeriksaan phishing dan keamanan 9bferon.com
“Instant +9B Feron — Direct portal for live investment data”
9bferon.com — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Amex; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VT 4 det. (total unavailable) (alphaMountain.ai, Gridinsoft); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 0; PD 67/100. Registrar: Dynadot.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
PhishDestroy first observed 9bferon.com on Jan 30, 2026. No available third-party check recorded a positive finding. Evidence score: 67/100.
AlienVault OTX listed 1 community pulse reference (not vendor detections) on Mar 1, 2026 at 10:44 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 14:20 UTC. URLQuery recorded no positive detection on Jan 30, 2026 at 06:18 UTC. On Jun 26, 2026 at 23:50 UTC, Google Safe Browsing returned no flag; VirusTotal was checked, but a reliable engine total is unavailable. URLScan completed without a malicious verdict (score 0) on Mar 27, 2026 at 11:50 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:08 UTC; content was unavailable. Registration records list Dynadot LLC as the registrar. At collection time, the domain resolved to 104.21.84.81. Collected metadata identifies Amex as the apparent target. Captured page title: “Instant +9B Feron — Direct portal for live investment data”. PhishDestroy classified the observed content as Brand Impersonation. DOM analysis completed on Apr 23, 2026 at 03:23 UTC; stored DOM score 10/100. IoC extraction completed on Aug 2, 2026 at 04:14 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis27/06/2026
This domain, 9bferon.com, is identified as a brand impersonation threat targeting American Express (Amex) customers. The site masquerades as an official financial portal, using the title 'Instant +9B Feron — Direct portal for live investment data' to deceive users into entering sensitive credentials or financial information. Such impersonation schemes are designed to exploit trust in established brands, often leading to unauthorized account access, financial fraud, or identity theft. The domain’s infrastructure and content are engineered to mimic legitimate financial services, increasing the likelihood of successful social engineering attacks. Analysis indicates that 9bferon.com exhibits multiple high-risk indicators. The domain is flagged by 2 out of 95 security vendors on VirusTotal, suggesting malicious intent despite limited detection at this stage. It was registered on February 21, 2026, through Dynadot LLC, a registrar frequently associated with fraudulent domains. The domain appears on three security blocklists and is actively blocked by MetaMask, SEAL, and PhishDestroy. Additionally, it resolves to the IP address 104.21.84.81, which has been linked to other suspicious activities. AlienVault OTX records the domain in a threat intelligence pulse, further corroborating its malicious classification. Users who visited 9bferon.com should take immediate action to mitigate potential risks. Disconnect from the site if still active in the browser and clear all cached data. Monitor associated financial accounts for unauthorized transactions and enable multi-factor authentication where available. If credentials were entered, reset passwords immediately and report the incident to the targeted brand’s fraud department. Security teams should update blocklists to include this domain and its resolving IP address to prevent further exposure. Vigilance is advised for similar phishing attempts, particularly those impersonating financial institutions.
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
ICANN Sudah Dibayar. Akuntabilitas Tak Kunjung Datang.
Untuk gTLD ini, registrar di atas beroperasi berdasarkan kontrak dengan ICANN. ICANN memungut biaya tahunan, biaya variabel, dan biaya berbasis transaksi yang terkait dengan pendaftaran, perpanjangan, dan transfer.
Akreditasi: dimonetisasi. Akuntabilitas: silakan periksa kembali nanti.
Lalu keajaiban dimulai: ICANN menulis RAA §3.18, registrar menyelidiki penyalahgunaan di dalam basis pelanggannya sendiri, dan para korban menyerahkan bukti secara cuma-cuma sementara setiap lapisan menunggu pihak lain bertindak. Jika itu membuat para korban merasa lebih aman, bagus sekali—ternyata tagihannya bekerja.
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Tentang Laporan Ini: 9bferon.com
Laporan ini menyajikan bukti tersimpan terbaru yang tersedia untuk PhishDestroy. Stempel waktu sumber ditampilkan jika tersedia; ketersediaan dan keputusan vendor dapat berubah setelah pengumpulan.
Situs yang diambil menampilkan judul halaman “Instant +9B Feron — Direct portal for live investment data” dan mungkin meniru identitas Amex.
Pada 07/08/2026, 9bferon.com memiliki deteksi dari mesin keamanan 4.
Jika Anda yakin daftar ini tidak akurat, mengajukan banding. Untuk mempelajari metodologi kami, kunjungi halaman pertanyaan umum.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive