bafybeifn4q7vghs7f3xwilosxa4dyllaadejgevezprlqf5cgs5mgpvmr4[.]ipfs[.]dweb[.]link
“Vertex”
bafybeifn4q7vghs7f3xwilosxa4dyllaadejgevezprlqf5cgs5mgpvmr4.ipfs.dweb.link — Não verificado. Resumo das evidências: VirusTotal 11/91 (alphaMountain.ai, BitDefender, CyRadar, Emsisoft, G-Data); 1 external blocklist match (ScamSniffer); PhishDestroy score 88/100. Registrador: CSC.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, hosted on the InterPlanetary File System (IPFS) gateway dweb.link, is currently flagged as an active generic phishing threat targeting users under the page title 'Vertex'. Infrastructure analysis reveals the domain resolves to the IP address 209.94.90.3, associated with AS40680 (Protocol Labs) in the United States. The domain was registered on February 24, 2017, through CSC Corporate Domains, Inc., and employs Cloudflare nameservers (clarissa.ns.cloudflare.com and tate.ns.cloudflare.com) alongside HTTP/3 support, indicating modern infrastructure designed to evade detection or blocking attempts. The SSL certificate is issued by Let's Encrypt (serial number E7), a common choice for both legitimate and malicious sites due to its free and automated nature. A 301 HTTP status code suggests the domain may redirect visitors to another location, though the final destination remains unconfirmed. Security vendor detections are minimal but notable: one of ninety-five vendors on VirusTotal has flagged the domain, while two independent blocklists (PhishDestroy and ScamSniffer) have explicitly blocked it. Scamadviser assigns a trust score of 1 out of 100, reinforcing the high-risk classification. The exact nature of the phishing content is not yet analysed, as no brand target or scam type is specified in available data. The page title 'Vertex' may refer to a legitimate entity, but without further evidence, this cannot be confirmed. Defenders should treat this domain as a generic phishing threat, particularly given its persistence since at least early 2026 and its use of IPFS, which complicates takedown efforts. Network-level blocking of the IP 209.94.90.3 and Cloudflare nameservers may mitigate exposure, though monitoring for redirects or evolving infrastructure is recommended. No cryptocurrency wallet addresses, payment gateways, or specific lures have been identified in the provided intelligence.
Sinais de segurança
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo