bkofmissouri[.]icu
bkofmissouri.icu — Непроверенный. Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Spamhaus DBL_PHISH; PhishDestroy score 95/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain bkofmissouri.icu was registered on March 23, 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and is currently flagged as an active generic phishing site. The site presents a page titled “Just a moment…” and returns HTTP status code 403, indicating that the front‑end is intentionally blocked or hidden.
Infrastructure analysis shows the domain resolves to IP address 188.114.96.3, which belongs to Cloudflare, Inc. in Canada. Both authoritative nameservers – joaquin.ns.cloudflare.com and lilyana.ns.cloudflare.com – are Cloudflare‑managed, and the site is served over HTTPS using a Let’s Encrypt E8 certificate. Detected technologies include Cloudflare Browser Insights and HTTP/3, confirming the use of Cloudflare’s edge network.
Threat intelligence reveals a Gridinsoft trust score of 0/100 and a single blocklist entry from PhishDestroy, indicating that at least one security vendor has already classified the domain as malicious. VirusTotal reports that 1 of 95 scanning engines flags the domain, reinforcing the suspicion. No additional payload or landing‑page content has been observed beyond the generic title, leaving the exact phishing lure and target brand uncertain.
Defenders should immediately block bkofmissouri.icu at the DNS and proxy layers, and add the IP 188.114.96.3 to network‑level blocklists. Monitoring for any new subdomains or similar Cloudflare‑hosted artifacts is advised, as the attacker may pivot to additional domains. Organizations should also educate users about unexpected “Just a moment…” prompts and enforce multi‑factor authentication to mitigate credential harvesting attempts.
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ЗОНА SHORTDOT · ПУБЛИЧНЫЕ ДОКАЗАТЕЛЬСТВА
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-19 02:38:26 UTC
Технологии · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of bkofmissouri.icu · checked Mar 23, 2026
Анализ конфигурации сайта
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание