bitpin-login[.]su
“W3.CSS Template”
Resumo das evidências
The domain bitpin-login.su is a credential-phishing site that was live until recently. It presented a generic login form under the page title 'W3.CSS Template' and did not impersonate any known brand or use a crypto-drainer kit. As of the latest scan, bitpin-login.su has been taken offline, but it previously posed an elevated risk of harvesting user credentials through deceptive input fields.
Technical indicators show that bitpin-login.su was flagged by 2 of 95 VirusTotal security vendors, including Fortinet and SOCRadar. The domain was registered through R01-SU on January 9, 2025, and resolved to the IP address 95.129.234.137, hosted by AS57724 (DDOS-GUARD LTD) in Russia. It appeared on one security blocklist (PhishDestroy) and had no SSL certificate. Scamadviser and Gridinsoft assigned trust scores of 1/100 and 0/100, respectively. Nameservers were pns51.cloudns.net, pns52.cloudns.net, and pns53.cloudns.net.
Users who entered credentials on bitpin-login.su should immediately change passwords for any accounts that may have been exposed, enable two-factor authentication, and monitor for unauthorized access or fraudulent activity. Victims can report the phishing domain to their email provider, browser security teams, or platforms like Google Safe Browsing or PhishTank to help prevent further abuse.
Instantâneo das evidências enviadas
- Enviado
- Registros do livro-razão
- 1
- ID do caso
PD-20260105-2D049F- Título da página capturada
- W3.CSS Template
- Artefato PDF
- Evidência em PDF
Base jurídica
Texto completo da evidência
Acceptable Use Policy (AUP): The domain bitpin-login.su is engaged in phishing activities, which directly contravenes the AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the operation of this phishing domain constitutes a clear violation of these terms.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which is applicable as phishing schemes often involve unauthorized data access.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities through electronic communications, which is relevant to the fraudulent activities conducted via this domain.
Anti-Phishing Consumer Protection Act: This legislation aims to combat phishing and related fraudulent activities, making the operation of this domain illegal.
Regulatory Note: Failure to take immediate action against this domain may result in regulatory scrutiny and potential liability under applicable laws. It is imperative to comply with your AUP and TOS to mitigate risks associated with hosting or registering domains involved in illegal activities.
Data Coverage
Sinais de segurança
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo