bafybeihms75acvcjt3g7klkxbpa4v2j2umkuhibbfnqtcc4vz4oauh7h3y[.]ipfs[.]dweb[.]link
bafybeihms75acvcjt3g7klkxbpa4v2j2umkuhibbfnqtcc4vz4oauh7h3y.ipfs.dweb.link — Conteúdo indisponível. Tipo de golpe: Fake Airdrop. Resumo das evidências: VirusTotal 16/94 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, Emsisoft); URLQuery 4 alerts; PhishDestroy score 100/100. Registrador: CSC.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy is currently investigating bafybeihms75acvcjt3g7klkxbpa4v2j2umkuhibbfnqtcc4vz4oauh7h3y.ipfs.dweb.link, which is suspected of being involved in generic phishing activities. The domain is currently marked as active and under investigation, requiring cautious assessment before interaction. The absence of specific brand impersonation suggests a broad, non-targeted phishing campaign.
Technical analysis reveals that the domain was registered through CSC Corporate Domains, Inc. and utilizes an SSL certificate issued by Let's Encrypt. It resolves to the IP address 209.94.90.3. The domain was created on February 24, 2017. Notably, at the time of analysis, VirusTotal reports 16 out of 95 vendors flagging the domain as malicious. This could indicate either a newly established threat or sophisticated obfuscation techniques designed to evade detection.
Given the 'under_investigation' risk level and lack of conclusive negative reports from VirusTotal, caution is advised. Users are strongly recommended to avoid entering any personal information or credentials on this website. PhishDestroy continues to monitor this domain. Further updates will be provided as the investigation progresses. Users are encouraged to report any suspicious activity encountered while interacting with this domain to assist in the investigation.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | bafybeihms75acvcjt3g7klkxbpa4v2j2umkuhibbfnqtcc4vz4oauh7h3y.ipfs.dweb.link/ |
malware | Detects file containing Telegram Bot API |
| OpenDNS | bafybeihms75acvcjt3g7klkxbpa4v2j2umkuhibbfnqtcc4vz4oauh7h3y.ipfs.dweb.link |
phishing | Phishing Block |
| Cloudflare DNS | bafybeihms75acvcjt3g7klkxbpa4v2j2umkuhibbfnqtcc4vz4oauh7h3y.ipfs.dweb.link |
malicious | Sinkholed |
| DNS4EU | bafybeihms75acvcjt3g7klkxbpa4v2j2umkuhibbfnqtcc4vz4oauh7h3y.ipfs.dweb.link |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of bafybeihms75acvcjt3g7klkxbpa4v2j2umkuhibbfnqtcc4vz4oauh7h3y.ipfs.dweb.link · checked Apr 4, 2026
Análise da configuração do site
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo