testnet-bridge[.]zkxpla[.]io
“zkSync Bridge | Transfer funds between zkSync and Ethereum”
testnet-bridge.zkxpla.io — Konten tidak tersedia (HTTP 502). Peniruan identitas merek: Ethereum; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 0/91; PhishDestroy score 48/100. Registrar: Gabia.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
PhishDestroy identifies testnet-bridge.zkxpla.io as an active crypto wallet phishing domain engineered to trick users into surrendering private keys or seed phrases under the pretense of a cross-chain bridge interface. The domain leverages a deceptive naming convention that mimics legitimate zero-knowledge proof (ZK) rollup or layer-2 bridge services. No known drainer kit signature or cloned branding repository has been publicly associated with this domain at this time, suggesting a recently deployed or bespoke phishing campaign.
Domain forensic analysis reveals a pristine reputation profile with 0 out of 95 VirusTotal engines flagging the URL as malicious, alongside a freshly issued SSL certificate from Let’s Encrypt and resolution to IP 76.76.21.164. Registered through Gabia, Inc. on May 12, 2025, the domain remains absent from Google Safe Browsing and has not yet propagated widely across public blocklists. These early-stage indicators suggest opportunistic targeting rather than large-scale distribution.
As of today, the threat is classified as active with an under-investigation risk level pending deeper behavioral analysis. Immediate response includes flagging the domain via internal threat intel platforms and blocking 76.76.21.164 at the network perimeter. While the current risk is assessed as low-to-medium due to limited detections, the domain’s youth and phishing intent warrant elevated monitoring. Users should avoid interacting with testnet-bridge.zkxpla.io, and organizations are advised to update DNS blocklists and SIEM rules to prevent accidental exposure.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 5 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org Keyakinan 100%Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org Keyakinan 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of testnet-bridge.zkxpla.io · checked May 3, 2026
Bukti & Laporan Eksternal
PD-20260503-449232 Recipient: abuse@vercel.com Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive