bvn546fgd[.]shop
“首页”
bvn546fgd.shop — Belum terverifikasi. Peniruan identitas merek: Generic; Jenis penipuan: Impersonation. Ringkasan bukti: VirusTotal 15/91 (alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Analysis of bvn546fgd.shop as of July 28, 2026 shows the domain is currently active and has been identified as a generic phishing operation. The domain resolves to the IPv4 address 47.242.217.10 and is delegated to the authoritative name servers launch1.spaceship.net and launch2.spaceship.net, both of which are typical of publicly available DNS services. The domain has been blocked by PhishDestroy and appears on one additional security blocklist, confirming that multiple threat‑intelligence feeds consider it malicious. VirusTotal scans reported that four out of ninety‑one antivirus and URL‑filtering engines flagged the domain, indicating a non‑negligible detection rate across independent scanners. No public information was found regarding SSL/TLS certificates, HTTP response codes, page title, or content analysis, so the exact visual or functional characteristics of the site remain unknown.
The lack of observed TLS certificates suggests the site may be serving content over plain HTTP, a condition that can facilitate credential capture through unencrypted forms. No WHOIS data was supplied, leaving the registrar, registration date, and ownership details undisclosed. The limited visibility of the hosting environment, combined with the presence on a blocklist and multiple vendor detections, suggests the infrastructure is being leveraged to host phishing lures, likely targeting credential theft. Defenders should immediately block DNS resolution for bvn546fgd.shop and the associated IP 47.242.217.10 at perimeter firewalls and proxy devices.
Continuous monitoring of outbound traffic for connections to the identified name servers and IP address is advised, as well as inclusion of the domain in internal threat‑intel feeds. Because the domain is still active, periodic re‑scanning with sandbox and URL‑reputation services is recommended to capture any evolution in payload or hosting changes.
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive