byvotes[.]exchange
“ByVotes”
Сохранённое обнаружение
Обнаружена маскировка
- Тип маскировки
content_divergence- Оценка маскировки
- 2/6
Сводка доказательств
The domain byvotes.exchange has been identified as posing a high-risk phishing threat. Operating under the guise of a seemingly legitimate service titled 'ByVotes', this domain may not specifically associate with any known brand but is engineered to deceive users into divulging sensitive information. At this time, no drainer kit has been explicitly associated with this domain, but its status on multiple security blocklists indicates malicious intent.
The technical indicators for byvotes.exchange provide a clear picture of its threat profile. The domain was created on May 09, 2026, through the registrar Dynadot Inc. It has been flagged by 4 out of 95 security vendors on VirusTotal, underscoring its potentially dangerous nature. The domain resolves to the IP address 188.114.96.3, located in Canada and associated with CloudFlare, Inc. It uses a Let's Encrypt SSL certificate with an E8 identifier, adding a layer of encryption that might be misused to gain user trust. The domain's presence on three security blocklists, including PhishDestroy, MetaMask, and SEAL, further corroborates the malicious threat it poses.
Currently, byvotes.exchange remains active, maintaining its potential to cause harm. Users are strongly advised to avoid interacting with the site and to implement protective measures such as updating security software and practicing caution with unknown domains. The domain's continued activity necessitates ongoing monitoring and possibly, more aggressive takedown efforts by cybersecurity authorities. The risk remains significant as long as this domain remains operational, given its capability to exploit unsuspecting users' trust and extract sensitive data. Vigilance and informed user behavior are essential to mitigating the risks posed by this domain.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
8 внешних источников под наблюдением Совпадений нет
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии
Выявлено 5 технологий с высокой уверенностью
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of byvotes.exchange · checked May 9, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание