bafybeibkhz4elzra2dauacvdzm6x2j5t3ow2n2z6ki6pftcjuis6ozi56e[.]ipfs[.]dweb[.]link
“Renzo”
bafybeibkhz4elzra2dauacvdzm6x2j5t3ow2n2z6ki6pftcjuis6ozi56e.ipfs.dweb.link — Belum terverifikasi. Peniruan identitas merek: Coinbase; Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); 2 external blocklist matches (ScamSniffer, Enkrypt); PhishDestroy score 100/100. Registrar: CSC.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, bafybeibkhz4elzra2dauacvdzm6x2j5t3ow2n2z6ki6pftcjuis6ozi56e.ipfs.dweb.link, is flagged as a high-risk brand impersonation threat targeting Coinbase users. Registered on February 24, 2017, through CSC Corporate Domains, Inc., the domain remains active and is hosted on infrastructure associated with Protocol Labs (AS40680) in the United States, resolving to IP address 209.94.90.3. Cloudflare nameservers (clarissa.ns.cloudflare.com and tate.ns.cloudflare.com) are in use, alongside an SSL certificate issued by Let's Encrypt (serial E7). The page title, 'Renzo,' does not align with the identified brand target, Coinbase, suggesting either a secondary payload or a decoy interface. Infrastructure analysis reveals the use of IPFS and HTTP/3, technologies commonly leveraged to obscure hosting origins and complicate takedown efforts. The domain is blocked by three security vendors: PhishDestroy, ScamSniffer, and Enkrypt, and is listed on three blocklists. Fifteen of 95 security vendors on VirusTotal detect this domain as malicious. The scam type is classified as a crypto scam, though the exact mechanics—whether credential harvesting, wallet-draining, or fraudulent token distribution—remain unconfirmed due to limited visibility into the site's content. Defenders should treat this domain as actively malicious, particularly in environments where Coinbase or cryptocurrency-related services are accessed. The combination of brand impersonation, IPFS hosting, and Cloudflare obfuscation indicates a deliberate attempt to evade detection and prolong operational lifespan. Network-level blocking of the domain and its resolving IP (209.94.90.3) is recommended, alongside monitoring for related infrastructure using the same ASN or nameserver patterns. Further analysis of the site's payload is necessary to determine the full scope of the threat.
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 3 identified
IPFS is a peer-to-peer hypermedia protocol that provides a distributed hypermedia web.
ipfs.tech Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Bukti Terarsip
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of bafybeibkhz4elzra2dauacvdzm6x2j5t3ow2n2z6ki6pftcjuis6ozi56e.ipfs.dweb.link · checked Mar 2, 2026
Analisis Konfigurasi Situs
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive