rf0a127416da[.]tbdehgv[.]top
rf0a127416da.tbdehgv.top — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Aptos; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 17/95 (ADMINUSLabs, Criminal IP, BitDefender, CyRadar, ESET); PhishDestroy score 95/100. Registrar: DNSPod.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain rf0a127416da.tbdehgv.top is flagged for brand impersonation, specifically targeting the brand Aptos. This domain does not appear to be associated with any particular crypto drainer kit. However, it is suspected to be part of a broader phishing campaign designed to deceive users into divulging sensitive information or performing unauthorized transactions.
Technical indicators reveal that the domain has been flagged by 17 out of 95 security vendors on VirusTotal, indicating a notable level of suspicion. The domain is registered through DNSPod, Inc., and resolves to the IP address 31.57.51.54, which is located in Hong Kong and belongs to AS138648 ASLINE Global Exchange. The domain was created on October 11, 2025, and currently does not possess an SSL certificate. It appears on one security blocklist and is blocked by PhishDestroy.
The domain rf0a127416da.tbdehgv.top is currently offline, which suggests that it has been taken down as part of a response to the identified threat. Despite this, the infrastructure remains a concern as it could be reactivated at any time. Users are advised to remain vigilant and avoid interacting with any links or communications related to this domain. Organizations should update their security policies to include this domain in their blocklists and monitor for any signs of reactivation or similar domains that may be used in future campaigns. The elevated risk level indicates that while the immediate threat is mitigated, the potential for future attacks remains high.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Registration: tbdehgv.top
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain tbdehgv.top behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive