Lompat ke laporan keamanan
⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 3. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@cosmotown.com. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
4 months
Reports sent
1
Latest case ID
PD-20260322-E2033E
Current status
Observed active at latest stored check
Keamanan domain dan intelijen ancaman

ultrabaserpc[.]xyz

Putusan ancaman Tinggi 65/100 skor bukti
Ketersediaan Belum terverifikasi Keterjangkauan saat ini belum terverifikasi
Deteksi Total Virus: 3/94 URLQuery threat systems: 1 alert Jenis penipuan: Brand Impersonation
OTX: 24 refs 22/03/2026 1 Report Sent CDN
Ringkasan laporan

ultrabaserpc.xyz — Belum terverifikasi. Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 3/94 (alphaMountain.ai, Forcepoint ThreatSeeker, SOCRadar); URLQuery 1 alert; PhishDestroy score 65/100. Registrar: Cosmotown.

Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.

Ringkasan bukti
TINGGI
Ref
ACA35A3E
Skor
65/100

This domain, ultrabaserpc.xyz, was registered on July 24, 2025, through Cosmotown Inc and remains active as of July 12, 2026. Analysis indicates it is explicitly targeting Base, a known cryptocurrency platform, through brand impersonation tactics. The domain currently resolves to IP address 104.21.16.138 and is flagged by 4 out of 95 security vendors on VirusTotal, with a Gridinsoft trust score of 0/100. It also appears on two security blocklists and has been referenced in 24 threat intelligence pulses on AlienVault OTX, suggesting persistent malicious activity. Infrastructure analysis reveals the use of Cloudflare services, including Cloudflare Browser Insights and HTTP/3, alongside common frontend libraries such as Materialize CSS, Bootstrap, and jQuery. The SSL certificate is issued by Google Trust Services, which may contribute to the domain's superficial legitimacy. However, the combination of brand impersonation, low detection thresholds among security vendors, and consistent blocklist presence indicates a high-risk threat. The domain's creation nearly a year prior to the current date, yet its continued activity, suggests it may be part of a long-term phishing campaign rather than a short-lived operation. Defenders should note that while the domain's hosting and SSL configuration appear standard, the impersonation of Base and its inclusion in multiple threat intelligence feeds warrant immediate blocking. The IP address 104.21.16.138 should be monitored for additional associated domains, as it may host other malicious infrastructure. Given the domain's persistence and the specific targeting of cryptocurrency users, security teams are advised to prioritize this domain for internal blocklisting and alerting. No evidence currently suggests compromise of legitimate Base infrastructure, but the impersonation vector remains a credible threat to end users.

VirusTotal
VirusTotal
3 det.
URLQuery
URLQuery
1 threat alert
OTX references
DNS Security
1/14
URLScan
URLScan
ScamAdviser
Scamadviser
76/100
Sertifikat TLS
Google Trust Services
Status terpantau
Belum terverifikasi
PhishDestroy
Daftar Hapus
Terdaftar
Reports Sent
1
Cakupan data VirusTotal 3 / 94 URLQuery 1 threat-system alert PhishStats checked — no match recorded OTX 24 community references CF Radar scan completed URLScan capture laporan yang disimpan URLScan verdict Analisis selesai Pemblokiran DNS 1/14 TLS valid certificate, 32d WHOIS not parsed Tangkapan layar 3 captures · 3 sources Rantai pengalihan tidak diselidiki Scamadviser 76/100
Intelijen Keamanan Jaringan
DNS Provider Blocks 1 / 14
Brand Base
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU on-chainfix.com malicious Sinkholed

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
14/15

Status Daftar Blokir Publik

Tangkapan tersimpan

Sertifikat TLS
Valid transport encryption · Diterbitkan oleh Google Trust Services · valid for 32 days

Intelijen Domain

Domain
URLScan Verdict Analisis selesai score 0 report ↗
Server / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Reputasi Edge-IP tidak dikaitkan dengan domain ini.
Alamat IP 104.21.16.138 CDN
LokasiCA Toronto, CA
JaringanAS13335 · Cloudflare, Inc.
IP asal tersembunyi di balik proksi CDN. Hasil IP terbalik untuk alamat edge berisi penyewa yang tidak terkait; menemukan asal memerlukan DNS pasif atau data transparansi sertifikat.
Elapsed Since First Report 31 days
Yang kami hitung Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Belum terverifikasi.
Isi setiap laporan Catatan laporan keluar yang disimpan dapat merujuk pada bukti yang tersedia pada saat itu, seperti keputusan vendor, data pendaftaran, detail hosting, klasifikasi, atau tangkapan layar. Halaman ini tidak menyimpulkan secara pasti muatan yang dikirimkan, penerimaan, pengakuan, atau tindakan oleh penerima.
Rincian teknisDNS, SAN SSL, cap waktu
Pertama Kali Terdeteksi22/03/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://ultrabaserpc.xyz/
Server namadaphne.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 18/03/2026scanned 25/03/2026
Case ID
ICANN OVERSIGHT

Akreditasi dan konteks RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Tidak ada yang dikirim secara otomatis.

Intelijen Forensik

External Scripts 3
https://files.coinmarketcap.com/static/widget/coinMarquee.js https://code.jquery.com/jquery-3.3.1.min.js https://cdnjs.cloudflare.com/ajax/libs/materialize/1.0.0/js/materialize.min.js
Teknologi · 8 identified
Materialize CSS
Bootstrap
UI frameworks

Popular CSS framework for responsive, mobile-first web development.

J
jQuery CDN

Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.

jQuery
JavaScript libraries

Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.

cdnjs
Cloudflare Browser Insights
Analytics RUM

Performance monitoring tool that measures website speed from real users.

www.cloudflare.com
Cloudflare
CDN

Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.

www.cloudflare.com
HTTP/3
Miscellaneous

Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.

Detected via Cloudflare Radar · Wappalyzer engine
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

3 / Vendor keamanan 94 menandai domain ini
View on VT
Last analyzed
alphaMountain.ai
Forcepoint ThreatSeeker
SOCRadar
Analisis Performa Situs

Google PageSpeed Insights — mobile performance audit of ultrabaserpc.xyz · checked Jul 12, 2026

79
Needs Work
Performance
FCP
3.02s
First Contentful Paint
LCP
4.01s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
4.49s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Bukti & Laporan Eksternal

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260322-E2033E Recipient: abuse@cosmotown.com
Page title stored with report: ultrabaserpc.xyz/
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 56.6 KB

Apakah Anda Terpengaruh oleh Situs Ini?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri

Periksa Domain Apa Pun

Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik

Pindai Sekarang

Laporkan Phishing

Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas

Laporan

Pemberitahuan Ancaman Real-Time

Laporan phishing terbaru dan perubahan ketersediaan yang diamati

Pantau

Tetap Terinformasi, Tetap Aman

Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive

Pemberitahuan Ancaman Real-Time Ajukan Banding Terhadap Iklan Ini
HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/ultrabaserpc.xyz"
  title="PhishDestroy threat report for ultrabaserpc.xyz"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Surat Terima Kasih yang Sangat Tulus

Pembuat draf satir

Penerima
Konteks biaya

Draf satir. Angka biaya merupakan perkiraan; tidak diklaim bahwa angka tersebut secara tepat terkait dengan domain ini.