huo[.]be
“Earn rewards when you get started on OKX | My referral code: 97597037 | OKX Europe”
Ringkasan bukti
On June 1, 2024, PhishDestroy identified huo.be as an active generic phishing domain engineered to harvest credentials through QR code redirections. The domain exhibits low sophistication yet remains unclassified by major blocklists, suggesting active targeting of unsuspecting users. No specific brand impersonation or drainer kit linkage has been observed, though the domain's resolution pattern aligns with campaigns distributing malicious QR codes in public spaces and digital flyers. The threat remains under investigation due to its elevated risk classification and absence of detection signatures. Immediate attention is warranted to prevent widespread compromise.
Technical indicators reveal huo.be was registered on January 25, 2019, through an unspecified registrar and resolves to the IP address 54.215.31.113 via a Let’s Encrypt SSL certificate. VirusTotal currently flags the domain with a clean score of 3/95 detections, while Google Safe Browsing (GSB) has yet to categorize it as malicious. The domain has not been listed on any major threat intelligence platforms, underscoring its stealthy deployment and limited exposure. These conditions suggest a newly activated or resurfaced campaign, leveraging long-standing domains to evade automated detection.
As of this advisory, huo.be remains active and unblocked by standard defenses, with no confirmed takedown efforts in progress. Security teams are advised to implement network-level blocking for the IP address 54.215.31.113 and the domain itself, while monitoring for QR code-based lures associated with this infrastructure. The residual risk remains elevated due to the absence of detections and the domain’s seemingly legitimate SSL certificate. Users should treat any QR codes leading to huo.be with extreme caution and report suspicious activity to their SOC for immediate triage. Proactive hunting for similar domains registered in 2019 is recommended to preempt potential spillover campaigns.
Data Coverage
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 12/08/2026
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of huo.be · checked Apr 8, 2026
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive