bitbama[.]pages[.]dev
Verificação de phishing e segurança de bitbama.pages.dev
“Stake Bama Token | Bitbama”
bitbama.pages.dev — Último ativo conhecido (HTTP 200). Tipo de golpe: Crypto Scam. Resumo das evidências: VirusTotal 3/91 (alphaMountain.ai, Gridinsoft, Webroot); 4 external blocklist matches; PhishDestroy score 100/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain is assessed as high risk and is classified as a generic phishing threat. Analysis indicates that bitbama.pages.dev remains active and presents characteristics commonly associated with phishing infrastructure, including the potential collection of credentials, wallet information, authentication data, or other sensitive user inputs through deceptive web content. The observed status indicates the resource is still operational and should be treated as untrusted.
Infrastructure analysis reveals that the domain resolves to IP address 172.66.47.101 and is registered through Cloudflare, Inc. Registration records show a creation date of May 04, 2024. The domain currently appears on 5 security blocklists and has been blocked by PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura. Detection telemetry shows that 1 of 95 VirusTotal vendors currently flags the domain. The site uses an SSL certificate issued by Google Trust Services / WE1 and is hosted in the US on AS13335 Cloudflare, Inc. The page title observed during analysis is "Stake Bama Token | Bitbama". While HTTPS is present, certificate deployment alone does not indicate legitimacy.
Current risk assessment remains high due to active status combined with blocklist presence across multiple security sources. Access to the domain should be restricted through DNS, web filtering, email security, and endpoint controls. Users should avoid entering credentials, authentication codes, wallet details, or financial information. Security teams should monitor network logs for connections to 172.66.47.101, investigate any historical interactions, and review affected accounts for unauthorized activity. Continued monitoring is recommended because phishing infrastructure may rapidly change content while maintaining the same domain.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências e relatórios externos
“@ace_linkbot”
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo