bitmax5678[.]com
“BitMax, built for value! Cryptocurrency trend forecasting exchanges.”
Resumo das evidências
This domain, bitmax5678.com, operates as a cryptocurrency exchange impersonation scheme designed to deceive users into disclosing login credentials and transferring digital assets to attacker-controlled wallets. The site mimics the branding and interface of the legitimate BitMax platform, employing identical visual elements, terminology, and service claims such as 'cryptocurrency trend forecasting exchanges.' Such impersonation tactics are commonly used to facilitate credential theft and crypto drainer attacks, where victims unknowingly authorize malicious transactions via compromised accounts or deceptive smart contracts. Infrastructure analysis reveals multiple indicators of malicious intent. The domain was registered on March 02, 2026, through GMO Internet, Inc., a registrar frequently associated with high-risk domains. It resolves to the IP address 188.114.96.3 and is flagged by 10 out of 95 security vendors on VirusTotal, including detection as a phishing resource. Additionally, the domain appears on one security blocklist and was actively blocked by real-time threat mitigation systems. Technical artifacts include the use of PHP, reCAPTCHA, Cloudflare, and HTTP/3, suggesting an attempt to evade detection while maintaining operational resilience. Users who visited bitmax5678.com should immediately revoke any active sessions, reset passwords for associated accounts, and review all connected wallet transactions for unauthorized activity. If credentials or wallet access were provided, affected parties should assume full account compromise and transfer remaining assets to a new, secure wallet. Monitoring for follow-up phishing attempts via email or messaging platforms is also recommended, as attackers may leverage stolen information for additional fraud. No further interaction with the domain or its associated infrastructure should occur.
Instantâneo das evidências enviadas
- Enviado
- Registros do livro-razão
- 1
- ID do caso
PD-20260316-A1DD9B- Título da página capturada
- BitMax, built for value! Cryptocurrency trend forecasting exchanges.
- Artefato PDF
- Evidência em PDF
Texto completo da evidência
Section 3.1 of AUP: The domain bitmax5678.com is engaged in phishing activities, which directly contravenes the prohibition against illegal activities and fraud.
Section 5.2 of TOS: The registrar reserves the right to suspend services for any domain involved in deceptive practices, which applies to the ongoing misuse of this domain.
Applicable Laws (JP):
Act on Prohibition of Unauthorized Computer Access (Act No. 128 of 1999) - This law prohibits unauthorized access to computer systems, which is relevant to phishing schemes.
Act on Regulation of Transmission of Specified Electronic Mail (Act No. 26 of 2002) - This law addresses the prohibition of sending unsolicited emails, including phishing attempts.
Penal Code of Japan (Act No. 45 of 1907) - Sections related to fraud and deception apply to the activities conducted through this domain.
Regulatory Note: Failure to act on this report may expose your organization to legal liability and regulatory scrutiny under applicable laws. Immediate action is recommended to mitigate potential risks.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | bitmax5678.com |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 10/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
VirusTotal
0 → 2
-
VirusTotal
7 → 10
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo