bafybeiguc2wldadcecll4xc5ikl6xkbl2vb5tu4pq2vmr6prjcls4oogiy[.]ipfs[.]dweb[.]link
“/ipfs/bafybeiguc2wldadcecll4xc5ikl6xkbl2vb5tu4pq2vmr6prjcls4oogiy/”
bafybeiguc2wldadcecll4xc5ikl6xkbl2vb5tu4pq2vmr6prjcls4oogiy.ipfs.dweb.link — 확인되지 않음. 증거 요약: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, ESET); PhishDestroy score 100/100. 등록기관: CSC.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
This domain, bafybeiguc2wldadcecll4xc5ikl6xkbl2vb5tu4pq2vmr6prjcls4oogiy.ipfs.dweb.link, operates as a crypto wallet drainer phishing infrastructure leveraging the InterPlanetary File System (IPFS) decentralized web protocol. Analysis indicates the site presents fraudulent cryptocurrency wallet interfaces designed to trick users into entering private keys or seed phrases, enabling attackers to drain funds from connected wallets. The use of IPFS (dweb.link gateway) allows the phishing content to persist even if the original hosting node is taken offline, complicating takedown efforts. Infrastructure analysis reveals multiple high-confidence indicators of malicious activity. The domain resolves to IPv6 address 2602:fea2:2::3, hosted on AS40680 (Protocol Labs) in the United States, and uses a Let's Encrypt SSL certificate (serial number E7). VirusTotal detection rates show 19 out of 95 security vendors flagging the domain as malicious, while two independent security blocklists (PhishDestroy and PhishingDB) have listed it. The domain was registered through CSC Corporate Domains, Inc., with a creation date of February 24, 2017, though the phishing content appears to have been deployed more recently. Users who visited this domain or interacted with its content should immediately disconnect any connected cryptocurrency wallets from the internet and transfer remaining assets to a new wallet with a fresh seed phrase. Any entered credentials, private keys, or seed phrases must be considered compromised. Monitor connected accounts for unauthorized transactions and report the incident to relevant blockchain security teams. The domain's current offline status does not guarantee safety, as IPFS-based phishing content may reappear through alternative gateways or peer nodes.
보안 신호
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 분석
보관된 증거
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of bafybeiguc2wldadcecll4xc5ikl6xkbl2vb5tu4pq2vmr6prjcls4oogiy.ipfs.dweb.link · checked Mar 1, 2026
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.