bbtk0m[.]icu
“Zirvebet Platformu Girişi - Zirvebet 2026 Adresi - Zirvebet Güncel”
Detecção armazenada
Alerta de cloaking
- Tipo de cloaking
referer_split- Pontuação de cloaking
- 1/6
Resumo das evidências
The domain bbtk0m.icu has been identified as active infrastructure for a generic phishing threat, with no evidence of brand impersonation or use of a known drainer kit at this time. The domain's operational status, combined with associated technical indicators, suggests it is being used for broad phishing attacks that may target personal credentials or financial data through deceptive web content.
Technical analysis reveals several key risk factors. The domain was created on June 24, 2026, using the registrar NICENIC INTERNATIONAL GROUP CO., LIMITED, a provider sometimes associated with rapid and low-cost domain registrations favored by threat actors. The domain currently resolves to IP address 104.21.21.206. It employs an SSL certificate issued by a major certificate authority, which can increase perceived legitimacy. On VirusTotal, bbtk0m.icu is flagged by 4 out of 95 security vendors, indicating that multiple threat intelligence feeds recognize malicious activity or suspicious patterns. The site carries a trust score of 0/100 according to Gridinsoft, further corroborating risk. No information is available suggesting inclusion on Google Safe Browsing or other mainstream blocklists beyond the VirusTotal data.
At present, bbtk0m.icu remains active and poses an elevated risk to users, particularly due to its recent registration, low trust reputation, and confirmed phishing flags. It is recommended that network administrators and security teams implement immediate blocklisting of this domain at the gateway and endpoint levels. Individuals should avoid interacting with links or messages referencing bbtk0m.icu and report any suspected phishing communications to the appropriate response teams. Ongoing monitoring is advised, as the domain's infrastructure may pivot to target specific brands or launch more tailored attack vectors in the future.
Instantâneo das evidências enviadas
- Enviado
- Registros do livro-razão
- 1
- ID do caso
PD-20260628-7B59B5- Artefato PDF
- Evidência em PDF
Texto completo da evidência
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | bbtk0m.icu |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Evidência do resultado armazenada
Resultado e atribuição da remoção
- Resultado
held- Disponibilidade
unreachable- Causa
registrar_client_hold- Agente
- NICENIC INTERNATIONAL GROUP CO., LIMITED
- Mecanismo
client_hold- Confiança
- 95%
- Primeira observação
- Observação mais recente
Indisponibilidade estimada
Tempo até a indisponibilidade: 0 hSHA-256 da evidência c91a4ad235ad
Linha do tempo de detecção
-
VirusTotal
0 → 4
-
Disponibilidade
Primeiro valor armazenado: DNS inativo
f93a11f87e4d -
Disponibilidade
DNS inativo → Desconhecido
891d550b97f9 -
Status do domínio
Acessível → Inacessível
-
Disponibilidade
Desconhecido → DNS inativo
bd29c65218d9 -
Disponibilidade
DNS inativo → Retido
52d40d6429b4 -
Disponibilidade
Retido → DNS inativo
f52d526b76a1 -
Disponibilidade
DNS inativo → Desconhecido
e9b2549fced2 -
Disponibilidade
Desconhecido → Retido
2075f9d3a947 -
Disponibilidade
Retido → Desconhecido
506d4e6089d2
Mostrar tudo (11)
-
Disponibilidade
Desconhecido → DNS inativo
6dfe9145995c -
Disponibilidade
DNS inativo → Retido
5eaa4b34c131 -
Disponibilidade
Retido → DNS inativo
641ed81dc4d5 -
Disponibilidade
DNS inativo → Desconhecido
cfe8134d11d2 -
Disponibilidade
Desconhecido → Retido
2326eb165679 -
Disponibilidade
Retido → Desconhecido
62126f41b25e -
Disponibilidade
Desconhecido → DNS inativo
d0b7046e8c2f -
Disponibilidade
DNS inativo → Retido
2c31ffe6e2f2 -
Disponibilidade
Retido → DNS inativo
ca9ed662b468 -
Disponibilidade
DNS inativo → Desconhecido
fcf78a958240 -
Disponibilidade
Desconhecido → Retido
c91a4ad235ad
Denúncias da comunidade
Denunciado por 0 membro da comunidade; visto pela primeira vez em 28/06/2026
- URLs únicas denunciadas
- 1
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ZONA SHORTDOT · EVIDÊNCIAS PÚBLICAS
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias
3 tecnologias identificadas com alta confiança
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of bbtk0m.icu · checked Jun 28, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo