bluefin[.]beefy[.]bar
“Google”
bluefin.beefy.bar — Контент недоступен. Олицетворение бренда: Google; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 9/95 (ChainPatrol, CRDF, CyRadar, Fortinet, Gridinsoft); PhishDestroy score 82/100. Регистратор: Dynadot.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain bluefin.beefy.bar shows a newly registered internet property created on October 01, 2025 and registered through Dynadot LLC. The domain is delegated to Cloudflare nameservers brenna.ns.cloudflare.com and hassan.ns.cloudflare.com, and resolves to the address 192.178.155.99, which is mapped to the United States and attributed to Autonomous System AS15169 owned by Google LLC. Despite the legitimate hosting attribution, the site presents a page title of "Google" and is explicitly classified as a brand‑impersonation campaign targeting Google. No Transport Layer Security certificate is observed for the domain, and the current operational state is offline, indicating that the site has been taken down or is otherwise inaccessible.
Reputation services provide a consistent negative assessment: Scamadviser assigns a trust score of 1 out of 100, Gridinsoft rates the domain at 0 out of 100, and the domain appears on one security blocklist where it has been blocked by the PhishDestroy service. VirusTotal scans report that nine of ninety‑five security vendors flagged the domain as malicious, reinforcing the suspicion of malicious intent. No additional public threat‑intelligence sources such as OTX, Safe Browsing, or similar are referenced in the available data.
The concrete evidence points to a deliberate attempt to masquerade as a Google resource, leveraging a Google‑owned IP range to increase perceived legitimacy while lacking proper HTTPS protection. Uncertainties remain regarding the specific payload or credential‑harvesting mechanisms, as the site is offline and no detailed page content has been captured. Defenders should treat bluefin.beefy.bar as a high‑confidence malicious indicator, add the domain to DNS‑level blocklists, monitor for any future re‑registration or infrastructure changes, and remain vigilant for related domains that may use similar naming patterns or Cloudflare name server configurations.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: beefy.bar
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain beefy.bar behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание