bitrefill-payment[.]com
Проверка домена bitrefill-payment.com на фишинг и безопасность
“Bitrefill Checkout”
bitrefill-payment.com — Последний известный активный (HTTP 200). Тип мошенничества: Crypto Drainer. Сводка доказательств: VT 0/91; URLQuery 0; URLScan capture; GSB no flag; Spamhaus DBL_PHISH; BL 2 (MetaMask, SEAL); PD 71/100. Регистратор: Internet Domain Servic….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
bitrefill-payment.com entered the PhishDestroy evidence set on Aug 7, 2026. The stored content classification is crypto drainer. The assembled evidence scores 71/100 (high).
Three independent sources are positive: MetaMask, SEAL, and Spamhaus DBL. MetaMask and SEAL listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 18:20 UTC. Spamhaus DBL: DBL_PHISH on Aug 7, 2026 at 10:30 UTC. The evidence is not unanimous. On Aug 7, 2026 at 08:41 UTC, VirusTotal recorded 0 detections among 91 engines; Google Safe Browsing returned no flag. URLQuery recorded no positive detection on Aug 7, 2026 at 09:15 UTC. URLScan captured the page on Aug 7, 2026 at 09:12 UTC. The 0/91 VirusTotal result therefore records detection disagreement at that collection time, not the absence of the later source findings.
HTTP 200 was recorded on Aug 7, 2026 at 10:50 UTC. Registration records for the domain list Internet Domain Service BS Corp. as the registrar and Aug 6, 2026 as the creation date. Registration preceded first observation by 0 days. At collection time, the hostname resolved to 188.114.96.3 (AS13335 Cloudflare, Inc.). The recorded endpoint location is San Francisco, US. The stored server header is cloudflare. Captured page title: “Bitrefill Checkout”. DOM analysis completed on Aug 7, 2026 at 10:20 UTC; stored DOM score 0/100. The evidence archive retains 5 visual captures from PhishDestroy, URLScan, URLQuery, and Cloudflare Radar. TLS metadata lists Google Trust Services as the certificate issuer with validity through Nov 4, 2026; checked Aug 7, 2026 at 10:02 UTC.
No target brand has been confirmed from stored page content; hostname wording alone is not treated as brand evidence. The 0/100 DOM score means that the DOM pass stored no scored indicators; it does not negate the independent source findings. Taken together, the page content and independent findings support classifying this hostname as crypto drainer.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
ICANN получила деньги. Подотчётность так и не появилась.
Для этой gTLD указанный выше регистратор работает по договору с ICANN. ICANN взимает ежегодные, переменные и транзакционные сборы, связанные с регистрациями, продлениями и трансферами.
Аккредитация: монетизирована. Подотчётность: пожалуйста, проверьте позже.
Затем начинается магия: ICANN пишет RAA §3.18, регистратор расследует злоупотребления внутри собственной клиентской базы, а жертвы бесплатно предоставляют доказательства, пока каждый уровень ждёт, что действовать начнёт кто-то другой. Если благодаря этому жертвы чувствуют себя в большей безопасности — отлично: счёт сделал своё дело.
Технологии · 4 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 100% уверенностиCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАрхивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of bitrefill-payment.com · checked Aug 7, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание