bitfiyer-4273-9ae77[.]bitfiyer-smzk[.]com
“BitGet”
bitfiyer-4273-9ae77.bitfiyer-smzk.com — Непроверенный. Олицетворение бренда: Bitget; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 11/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, ESET, Forcepoint ThreatSeeker); URLScan malicious verdict; 1 external blocklist match (ScamSniffer); PhishDestroy score 83/100. Регистратор: GoDaddy.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain bitfiyer-4273-9ae77.bitfiyer-smzk.com was registered through GoDaddy.com, LLC on 26 September 2025. Its authoritative nameservers are ns69.domaincontrol.com and ns70.domaincontrol.com, both typical of GoDaddy‑hosted zones. The site is currently offline, and the HTTP service returns no content, but historical analysis shows the page title was “BitGet”, matching the brand target BitGet and confirming a brand‑impersonation intent. The SSL certificate, issued by Let’s Encrypt under the R12 profile, was valid at the time of capture, indicating the operator attempted to present a trusted HTTPS connection.
Network resolution points to IP 162.245.220.172, which belongs to AS150452 LANDUPS LIMITED in Hong Kong; this IP appears on two public blocklists and is flagged by the PhishDestroy and ScamSniffer blocklists. VirusTotal scans recorded four positive detections out of ninety‑three security vendors, reinforcing the malicious classification. Gridinsoft assigned a trust score of 0 out of 100, reflecting a high confidence of malicious behavior.
The domain is categorized as a crypto‑scam, explicitly impersonating BitGet, and the limited detection footprint suggests a short‑lived campaign. Defenders should block the domain and its associated IP at perimeter firewalls, update URL filtering feeds with the two blocklist identifiers, and monitor for any DNS queries to the listed nameservers. Because the site is offline, threat hunting should focus on any residual payloads or credential harvests that may have been delivered during the active window, and incident response teams should advise users to disregard any communications referencing BitGet that originated from this domain.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: bitfiyer-smzk.com
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain bitfiyer-smzk.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of bitfiyer-4273-9ae77.bitfiyer-smzk.com · checked Mar 2, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание