events-bluefin[.]xyz
events-bluefin.xyz — 확인되지 않음. 사기 유형: Crypto Scam. 증거 요약: VirusTotal 6/91 (ChainPatrol, alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. 등록기관: Dynadot.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
This domain is flagged as a high-risk generic phishing threat, specifically identified as a crypto scam. Registered on April 14, 2026, through Dynadot LLC, the domain remains active as of July 13, 2026, and resolves to IP 188.114.96.3, hosted on Cloudflare infrastructure (ASN associated with Cloudflare, Inc., located in Canada). The page title is 'Just a moment...', suggesting an initial redirect or access gate, and the HTTP status is 403, blocking direct content retrieval. Security analysis shows strong indicators of malicious intent: the domain appears on three security blocklists and is blocked by PhishDestroy, MetaMask, and SEAL. VirusTotal scanning reports 8 of 94 security vendors flagging the domain, and AlienVault OTX includes it in one threat intelligence pulse. The Gridinsoft trust score is 0 out of 100, reflecting high distrust. The SSL certificate is issued by Let's Encrypt (E7), a common choice for rapid deployment. Infrastructure analysis reveals that the domain uses Cloudflare nameservers (carlos.ns.cloudflare.com and reza.ns.cloudflare.com), which may provide DDoS protection and obscure the origin server. What is uncertain is the exact phishing payload or landing page content, as the 403 status prevents full retrieval. Defenders should block the domain at network and DNS levels, add it to threat intelligence feeds, and investigate any associated IP ranges or certificates for related infrastructure. Given the active status and multiple blocklist hits, immediate containment is recommended to prevent credential or cryptocurrency theft.
위협 대응 Pipeline
공개 차단 목록 상태
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.