bafkreibm6kp7ltcmpl3p2mdxx3wirdfwk2jyykygjzwp3hcjszl7z2fy3i[.]ipfs[.]dweb[.]link
“Sign in - Professional Email”
bafkreibm6kp7ltcmpl3p2mdxx3wirdfwk2jyykygjzwp3hcjszl7z2fy3i.ipfs.dweb.link — Контент недоступен. Олицетворение бренда: Network Solutions; Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 21/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Регистратор: CSC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain bafkreibm6kp7ltcmpl3p2mdxx3wirdfwk2jyykygjzwp3hcjszl7z2fy3i.ipfs.dweb.link is identified as a brand impersonation threat targeting Network Solutions. As of the latest assessment, this domain is currently offline.
Analysis indicates that the domain was created on February 24, 2026, and resolves to the IP address 209.94.90.2, which is located in the United States and is part of AS40680 Protocol Labs. The domain is registered through CSC Corporate Domains, Inc. The SSL certificate is issued by Let's Encrypt, with the serial number E7. The page title found is 'Sign in - Professional Email', which is consistent with the brand impersonation of Network Solutions. This domain has been flagged by 21 out of 95 VirusTotal security vendors, indicating a significant level of suspicion. It appears on one security blocklist, specifically PhishDestroy.
Given the current status of the domain being offline, the immediate risk is mitigated. However, organizations and individuals should remain vigilant as the domain could be reactivated. It is recommended to monitor for any signs of reactivation and to educate users on the importance of verifying URLs and SSL certificates. Additionally, network administrators should consider implementing DNS-based blocklists to prevent access to known malicious domains.
Сигналы безопасности
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 6 identified
IPFS is a peer-to-peer hypermedia protocol that provides a distributed hypermedia web.
ipfs.tech 100% уверенностиBackboneJS is a JavaScript library that allows to develop and structure the client side applications that run in a web browser.
backbonejs.org 100% уверенностиUnderscore.js is a JavaScript library which provides utility functions for common programming tasks. It is comparable to features provided by Prototype.js and the Ruby language, but opts for a functional programming design instead of extending object prototypes.
underscorejs.org 100% уверенностиjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ конфигурации сайта
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание