bybit-aml[.]ru
“Bybit AML”
저장된 관찰
관찰된 제목 차이
증거 요약
PhishDestroy identifies bybit-aml.ru as a live crypto drainer site that masquerades as Bybit’s official compliance portal to trick users into connecting their wallets and signing malicious transactions. The domain resolves to IP 104.21.3.110, carries a Let’s Encrypt SSL certificate, and was registered on April 30, 2026 through REGRU-RU—roughly a year in the future from today, a strong red flag for time-stamp manipulation. This domain was flagged by 4 out of 95 VirusTotal security vendors, placing it at an elevated risk level. The seed 322483 confirms this is a brand-impersonation campaign specifically targeting Bybit users who may be seeking AML or KYC verification pages. Attackers rely on look-alike branding and urgency language to bypass two-factor authentication and drain funds directly from connected wallets. If you visited bybit-aml.ru, immediately disconnect your wallet and revoke any permissions you may have granted. Do not enter any credentials or sign any transactions. Use PhishDestroy’s link checker before clicking any crypto-related URLs, and report the domain for takedown. Stay safe by always navigating to official websites via verified bookmarks or the project’s official social channels.
Data Coverage
네트워크 보안 인텔리전스
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | bybit-aml.ru |
malicious | Sinkholed |
| OpenDNS | bybit-aml.ru |
phishing | Phishing Block |
| DigiCert UltraDNS | bybit-aml.ru |
malicious | Sinkholed |
| Hagezi Threat Feed | bybit-aml.ru |
malicious | Sinkholed |
| DNS4EU | bybit-aml.ru |
malicious | Sinkholed |
위협 대응 Pipeline
차단 목록 범위
모니터링 중인 외부 피드 10개 · 저장된 스냅샷 2026년 8월 10일
기술
신뢰도가 높은 기술 3개 식별
VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of bybit-aml.ru · checked May 7, 2026
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.
모든 도메인 확인
저장된 차단 목록, WHOIS, DNS 및 공개 스캔 증거를 사용한 위협 분석
지금 스캔하기피싱 신고
의심스러운 도메인을 당사의 위협 데이터베이스에 신고해 주세요 — 커뮤니티를 보호해 주세요
보고서실시간 위협 정보
최근 피싱 보고서 및 관찰된 가용성 변경 사항
모니터링