bafybeicstr6f6nebuy7tjlpjgzecshw3segkzgnu4rzkkzrr6hrawmofg4[.]ipfs[.]dweb[.]link
“Rivus”
bafybeicstr6f6nebuy7tjlpjgzecshw3segkzgnu4rzkkzrr6hrawmofg4.ipfs.dweb.link — Контент недоступен. Тип мошенничества: Crypto Drainer. Сводка доказательств: VirusTotal 0 detections (engine total unavailable); 1 external blocklist match (ScamSniffer); PhishDestroy score 58/100. Регистратор: CSC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain bafybeicstr6f6nebuy7tjlpjgzecshw3segkzgnu4rzkkzrr6hrawmofg4.ipfs.dweb.link, titled 'Rivus,' is currently under investigation for potential generic phishing activity. This domain is registered through CSC Corporate Domains, Inc. and resolves to the IP address 209.94.90.2, which is located in the United States and is part of AS40680 Protocol Labs. The domain was created on February 24, 2017, and is currently offline, returning an HTTP status code of 410. Infrastructure analysis reveals that the domain is using Cloudflare and supports HTTP/3.
The SSL certificate is issued by Let's Encrypt, with the SHA-256 fingerprint E7. The domain appears on two security blocklists: PhishDestroy and ScamSniffer. These listings suggest that the domain has been flagged for suspicious activity, but the exact nature of the threat is still under investigation. Defenders should monitor the domain for any changes in status and avoid accessing it until a comprehensive analysis confirms its safety.
The nameservers for the domain are clarissa.ns.cloudflare.com and tate.ns.cloudflare.com. The exact content of the domain has not yet been analyzed, and no additional intelligence from sources like Safe Browsing or OTX is available. Given the current status and blocklist presence, organizations should consider adding this domain to their internal blocklists as a precautionary measure.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание