bafkreictgoqh23cwflhs54whbr4qfmydt6b37wkeai4mie7vdq3tcistxe[.]ipfs[.]dweb[.]link
“Webmail Sign-in”
bafkreictgoqh23cwflhs54whbr4qfmydt6b37wkeai4mie7vdq3tcistxe.ipfs.dweb.link — 콘텐츠를 사용할 수 없음. 브랜드 사칭: Genericemail; 사기 유형: Credential Phishing. 증거 요약: VirusTotal 22/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 4 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. 등록기관: CSC.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
PhishDestroy identifies an active generic phishing threat associated with the domain bafkreictgoqh23cwflhs54whbr4qfmydt6b37wkeai4mie7vdq3tcistxe.ipfs.dweb.link. This entry has been assigned an elevated risk rating due to confirmed malicious behavior and widespread detection across multiple security platforms. The domain leverages IPFS hosting infrastructure to distribute phishing lures, often mimicking legitimate login portals or financial services to harvest user credentials and sensitive data. Security analysts confirm this domain resolves to a high-risk IP address (209.94.90.2), which has been linked to prior phishing campaigns and botnet activity. The presence of a valid Let’s Encrypt SSL certificate increases the appearance of legitimacy, deceiving users into trusting the site. With a seed identifier of e5edb5, this domain represents a persistent and evolving threat vector within decentralized web environments. This domain was flagged by 18 out of 95 VirusTotal security vendors, indicating strong consensus among antivirus and threat intelligence platforms about its malicious intent. Registered through CSC Corporate Domains, Inc. on February 24, 2017, this long-standing domain has been repurposed to host phishing content, demonstrating the tactic of leveraging aged domains for credibility. The domain’s integration with IPFS (InterPlanetary File System) further complicates takedown efforts and enables circumvention of traditional web filtering mechanisms. Given its prolonged existence and current active status, this domain has likely been involved in multiple phishing operations targeting unsuspecting users across various sectors. Users who have accessed this domain or encountered it in emails, ads, or social media should immediately cease any interaction and avoid entering credentials or personal information. It is strongly recommended to scan all connected devices with updated antivirus and anti-malware software to detect potential infections or data exfiltration. Users are also advised to change passwords for any accounts that may have been accessed after visiting this domain, especially if credentials were entered on a page hosted at this location. Report the domain to your organization’s security team or to platforms such as Google Safe Browsing, PhishTank, or the Anti-Phishing Working Group to help disrupt ongoing campaigns. Exercise heightened caution with links or attachments from unknown or unsolicited sources, and enable multi-factor authentication wherever possible to mitigate the risk of credential theft.
네트워크 보안 인텔리전스
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | bafkreictgoqh23cwflhs54whbr4qfmydt6b37wkeai4mie7vdq3tcistxe.ipfs.dweb.link/ |
malware | Detects file containing Telegram Bot API |
| DNS4EU | bafkreictgoqh23cwflhs54whbr4qfmydt6b37wkeai4mie7vdq3tcistxe.ipfs.dweb.link |
malicious | Sinkholed |
| Cloudflare DNS | bafkreictgoqh23cwflhs54whbr4qfmydt6b37wkeai4mie7vdq3tcistxe.ipfs.dweb.link |
malicious | Sinkholed |
| OpenDNS | bafkreictgoqh23cwflhs54whbr4qfmydt6b37wkeai4mie7vdq3tcistxe.ipfs.dweb.link |
phishing | Phishing Block |
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 5 identified
Popular CSS framework for responsive, mobile-first web development.
Free public CDN for open-source projects, serving files from npm and GitHub.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of bafkreictgoqh23cwflhs54whbr4qfmydt6b37wkeai4mie7vdq3tcistxe.ipfs.dweb.link · checked Mar 29, 2026
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.