Lompat ke laporan keamanan
⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 6. Daftar blokir publik yang melaporkan kecocokan: 2. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
Keamanan domain dan intelijen ancaman

io-starts[.]website

“Sorry, the website has been stopped”

Putusan ancaman Kritis 85/100 skor bukti
Ketersediaan Belum terverifikasi Tidak ada tanggapan konklusif saat ini yang disimpan
Deteksi Total Virus: 6/91 Spamhaus DBL: DBL_PHISH Daftar blokir yang disimpan cocok: 2 Jenis penipuan: Crypto Scam
25/05/2026 1 Report Sent

Ringkasan bukti

KRITIS
Evidence score
85/100

This domain, io-starts.website, is identified as a phishing infrastructure specifically designed to impersonate cryptocurrency wallet recovery services. Analysis indicates the site likely deceived users into entering sensitive credentials, such as private keys or seed phrases, under the pretense of restoring access to digital wallets. The threat actors behind this domain appear to exploit urgency and fear of lost funds, a common tactic in crypto-related phishing schemes. No legitimate wallet provider or recovery service operates under this domain, and its content was structured to mimic official interfaces while harvesting victim data. Evidence supporting this assessment includes multiple technical indicators. The domain was registered on May 24, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with malicious infrastructure. VirusTotal reports 6 out of 95 security vendors flagging the domain as malicious, while Gridinsoft assigns it a trust score of 0/100. Additionally, the domain appears on three security blocklists and resolves to the IP address 209.38.47.188, which has been linked to other phishing campaigns. The page title, 'Sorry, the website has been stopped,' suggests an attempt to mislead users into believing the service was temporarily unavailable rather than permanently malicious. Users who visited io-starts.website or interacted with its content should take immediate action to mitigate potential compromise. First, revoke any wallet permissions or connected applications associated with the domain. Second, transfer remaining funds to a new, secure wallet using a clean device to prevent further unauthorized access. Third, monitor accounts for unusual transactions and enable multi-factor authentication where possible. If private keys or seed phrases were entered, assume full account compromise and act accordingly. Organizations should update blocklists to include this domain and its associated IP address to prevent further exposure.

Snapshot bukti yang dikirim

Dikirim
Catatan buku besar
1
ID kasus
PD-20260525-47A05B
Judul halaman yang direkam
Sorry, the website has been stopped
Artefak PDF
Bukti PDF
Teks bukti lengkap
Registrar: NICENIC International Group Co., Limited (Hong Kong (China))
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
VirusTotal
VirusTotal
6 det.
DNS Security
3/14
Usia
3 mo New
Status terpantau
Belum terverifikasi
PhishDestroy
Daftar Hapus
Terdaftar
Reports Sent
1

Data Coverage

VirusTotal 6 / 91 URLQuery checked — no detections recorded PhishStats checked — no match recorded OTX no community references CF Radar scan completed URLScan capture laporan yang disimpan URLScan verdict putusan tidak tersedia Pemblokiran DNS 3/14 TLS tidak ada data sertifikat WHOIS 3 mo old Tangkapan layar 2 captures · 2 sources Rantai pengalihan tidak diselidiki
Intelijen Keamanan JaringanRegistrar context
DNS Provider Blocks 3 / 14
Controld Adblock Controld Family Controld Malware
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer:

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
12/13

Cakupan daftar blokir

10 sumber eksternal dipantau · snapshot tersimpan 12/08/2026

8 sumber eksternal dipantau Tidak cocok

Linimasa deteksi

  1. VirusTotal

    1 → 6

Tangkapan tersimpan

Judul Halaman
Sorry, the website has been stopped

Intelijen Domain

Domain
Server / ASN AS14061 DigitalOcean, LLC
Reputasi IP IP abuse confidence 44/100 8 reports checked 13/07/2026
Alamat IP 209.38.47.188 NL
LokasiNL Amsterdam, NL
JaringanAS14061 · DigitalOcean, LLC
PendaftaranDibuat 24/05/2026 (80d · New)
Elapsed Since First Report 19 days
Yang kami hitung Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Belum terverifikasi.
Isi setiap laporan Catatan laporan keluar yang disimpan dapat merujuk pada bukti yang tersedia pada saat itu, seperti keputusan vendor, data pendaftaran, detail hosting, klasifikasi, atau tangkapan layar. Halaman ini tidak menyimpulkan secara pasti muatan yang dikirimkan, penerimaan, pengakuan, atau tindakan oleh penerima.
Detail teknisDNS, nama TLS, dan stempel waktu
Pertama Kali Terdeteksi25/05/2026
Submitted URLhttp://io-starts.website/
Server namacloe.ns.cloudflare.comjulian.ns.cloudflare.com
Pengamatan TLSdipindai 09/07/2026
ICANN OVERSIGHT

Akreditasi dan konteks RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Tidak ada yang dikirim secara otomatis.
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

6 / Vendor keamanan 91 menandai domain ini
View on VT
Last analyzed
alphaMountain.ai
CRDF
Forcepoint ThreatSeeker
Fortinet
Gridinsoft
SOCRadar

Apakah Anda Terpengaruh oleh Situs Ini?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri

Periksa Domain Apa Pun

Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik

Pindai Sekarang

Laporkan Phishing

Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas

Laporan

Pemberitahuan Ancaman Real-Time

Laporan phishing terbaru dan perubahan ketersediaan yang diamati

Pantau

Tetap Terinformasi, Tetap Aman

Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive

Pemberitahuan Ancaman Real-Time Ajukan Banding Terhadap Iklan Ini

Alat eksternal

HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/io-starts.website"
  title="PhishDestroy threat report for io-starts.website"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Surat Terima Kasih yang Sangat Tulus

Pembuat draf satir

Penerima
Konteks biaya

Draf satir. Angka biaya merupakan perkiraan; tidak diklaim bahwa angka tersebut secara tepat terkait dengan domain ini.