MALICIOUS — CRITICAL
security-botverify[.]sbs
The domain security-botverify.sbs has been identified as a credential phishing threat specifically designed to steal login credentials by impersonating Telegram's group chat interface.
- VirusTotal
- 14/91
- Blocklists
- No stored match
- Ketersediaan
- Konten tidak tersedia · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
security-botverify.sbs — Konten tidak tersedia (HTTP 502). Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 3 alerts; Spamhaus DBL_PHISH; PhishDestroy score 92/100. Registrar: Dynadot.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
The domain security-botverify.sbs has been identified as a credential phishing threat specifically designed to steal login credentials by impersonating Telegram's group chat interface. Currently, the domain has been taken offline, but its infrastructure remains a risk as similar sites may reappear. The phishing page displayed a title of 'Telegram: Join Group Chat,' luring users into entering their Telegram credentials under the guise of joining a chat group.
Technical analysis reveals that security-botverify.sbs was registered on April 25, 2026, through Dynadot LLC, a known registrar. The domain resolves to IP address 104.21.92.134 and uses a Let's Encrypt SSL certificate (E7) to appear legitimate. VirusTotal data shows that 14 out of 95 security vendors flagged this domain as malicious, and it appears on at least 1 security blocklist. Additionally, AlienVault OTX includes this domain in 1 threat intelligence pulse, indicating active tracking by the security community.
Although the domain is currently offline, users should remain vigilant. PhishDestroy recommends that anyone who may have interacted with security-botverify.sbs immediately change their Telegram password and enable two-factor authentication. Always verify URLs by checking the official Telegram domain (telegram.org) before entering credentials. If you encounter similar domains, report them to PhishDestroy to help protect others from credential theft.
Cakupan data12 recorded checks
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | security-botverify.sbs |
malicious | Sinkholed |
| DNS4EU | security-botverify.sbs |
malicious | Sinkholed |
| Quad9 DNS | security-botverify.sbs |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ZONA SHORTDOT · BUKTI PUBLIK
.sbs
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisis VirusTotal
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.