Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@omegatech.sc.
The latest stored availability evidence still shows the domain reachable; 2 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
bitrefill-pay[.]at
“Bitrefill Checkout”
bitrefill-pay.at — 未検証. 証拠の概要: VirusTotal 8/91 (ChainPatrol, alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, G-Data); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
PhishDestroy first observed bitrefill-pay.at on Aug 19, 2026. The captured page title is “Bitrefill Checkout”. Current evidence score: 95/100 (critical).
Positive findings are stored from 4 sources: VirusTotal, MetaMask, SEAL, and Spamhaus DBL. VirusTotal recorded 8 detections among 91 engines: ChainPatrol, alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, SOCRadar, Sophos on Aug 22, 2026 at 01:58 UTC. MetaMask and SEAL listed the hostname in the separate external-blocklist snapshot on Aug 22, 2026 at 18:20 UTC. Spamhaus DBL: DBL_PHISH on Aug 20, 2026 at 02:30 UTC. Non-positive and contextual checks: On Aug 22, 2026 at 01:59 UTC, AlienVault OTX listed 4 community pulse references (not vendor detections); Google Safe Browsing returned no flag. URLQuery recorded no positive detection; no observation timestamp was retained. URLScan completed without a malicious verdict (score 0) on Aug 19, 2026 at 23:08 UTC.
The collector marked the hostname reachable on Aug 20, 2026 at 22:15 UTC, but did not retain the HTTP response code. At collection time, the hostname resolved to 158.94.210.56. The recorded endpoint location is Amsterdam, NL. The stored server header is nginx/1.30.3. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. TLS metadata lists Let's Encrypt as the certificate issuer.
The content indicators and 4 positive source findings support the current phishing classification. The stored fields do not identify an impersonated brand or victim interaction.
脅威対応 Pipeline
公開ブロックリスト登録状況
使用技術 · 2 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 信頼度 100%Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 信頼度 100%VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of bitrefill-pay.at · checked Aug 20, 2026
証拠および外部報告書
PD-20260819-99B9E3 Recipient: abuse@omegatech.sc このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください