paybis-logiin-io-us[.]pages[.]dev
“Paybis Login — Anleitung, Tipps & Fehlerbehebung”
paybis-logiin-io-us.pages.dev — Conteúdo indisponível. Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 2/91 (ChainPatrol, LevelBlue); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain carries a high risk level and is confirmed to be a generic phishing site, specifically designed to steal cryptocurrency login credentials by impersonating the Paybis platform. PhishDestroy identifies this as a fake login page that attempts to trick users into entering their wallet details, effectively acting as a crypto drainer. The site is currently active and poses an immediate threat to anyone who encounters it.
The domain paybis-logiin-io-us.pages.dev was registered through Cloudflare, Inc. on November 10, 2025, and resolves to IP address 188.114.97.3. It uses an SSL certificate issued by Google Trust Services (WE1), which gives it a false sense of security. According to VirusTotal, 2 out of 95 security vendors flag this domain as malicious, and it appears on 3 security blocklists. The page title, "Paybis Login — Anleitung, Tipps & Fehlerbehebung," is in German, indicating the attack may target German-speaking users. These technical indicators, combined with its recent creation and active status, strongly confirm its fraudulent nature.
Users who encounter this domain should immediately close the page and avoid entering any personal or financial information. To protect against such phishing attempts, always verify the official Paybis website URL by typing it directly into the browser or using a trusted bookmark. Enable two-factor authentication on your crypto accounts and consider using a password manager that detects fake sites. If you have already entered credentials, change your passwords immediately and contact Paybis support. Report the domain to cybersecurity authorities and use PhishDestroy to block similar threats in the future.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo