http://binance-offer.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encoding“BINANCE EXCLUSIVE REWARDS: CLAIM NOW!”
Analysis of the domain binance-offer.netlify.app, observed on 2026-07-29, indicates that it is an active phishing infrastructure targeting users of the Binance platform. The domain is hosted on Netlify’s platform, as indicated by the registrar information. DNS resolution returns the IPv4 address 63.176.8.218; the authoritative nameserver lookup failed, returning NS_NOT_FOUND, which suggests the domain relies on Netlify’s default DNS configuration rather than custom nameservers. VirusTotal has recorded detections from 7 out of 91 scanned security vendors, demonstrating that multiple independent scanners have identified malicious behavior. The domain appears on a single external blocklist and is currently listed as blocked by the PhishDestroy feed, confirming that at least one community‑managed mitigation service recognises it as hostile. No additional public reputation signals, such as Safe Browsing verdicts, OTX tags, SSL certificate details, or HTTP response codes, are available in the supplied intelligence.
The presence of multiple vendor detections, combined with blocklist inclusion, justifies a high risk rating. Uncertainty remains regarding the exact phishing tactics employed because page‑title information, TLS parameters, and content analysis have not been disclosed. Consequently, the specific lure or credential‑harvesting mechanism cannot be described beyond the generic classification.
Defenders should treat the domain as hostile and enforce network‑level blocking of both the hostname and its resolved IP address 63.176.8.218. URL filtering solutions, DNS sinkholing, and endpoint allow‑list adjustments are recommended. Users should be warned against any unsolicited communications that reference Binance and direct them to this URL. Continuous re‑evaluation is advised as further telemetry becomes available, particularly any observations of page content, HTTP status, or additional blocklist listings, to refine detection and response actions.
10 fonti esterne monitorate · snapshot del 12/08/2026
Primo valore archiviato: Raggiungibile
Raggiungibile → Non raggiungibile
2 tecnologie identificate con alta affidabilità
Google PageSpeed Insights — mobile performance audit of binance-offer.netlify.app · checked Jul 29, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://binance-offer.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingSe hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaSegnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraControlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo