MALICIOUS — CRITICAL
Проверка домена bzstart.com на фишинг и безопасность
bzstart[.]
Analysis of www.bzstart.com indicates that the domain was created on 22 March 2026 through Dynadot Inc and resolves to the IPv4 address 123.108.75.6, which is geolocated to Singapore (ELD).
- VirusTotal
- 11/91
- Blocklists
- No stored match
- Доступность
- Скрытый · достижимый · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
bzstart.com — Скрытый · достижимый (HTTP 502). Тип мошенничества: Investment Scam. Сводка доказательств: VirusTotal 11/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); cloaking observed; PhishDestroy score 88/100. Регистратор: Dynadot.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
Analysis of www.bzstart.com indicates that the domain was created on 22 March 2026 through Dynadot Inc and resolves to the IPv4 address 123.108.75.6, which is geolocated to Singapore (ELD). The only observed page element is a title tag reading “Start”. Technical fingerprints show the use of Vue.js for client‑side rendering and the presence of HTTP Strict Transport Security (HSTS). The TLS certificate is signed by Sectigo Limited under the Sectigo Public Server Authentication CA DV R36 chain, confirming that the site was served over HTTPS. Reputation scoring is extremely low: Gridinsoft assigns a trust score of 0 out of 100, while Scamadviser records a score of 10 out of 100.
The domain appears on a single security blocklist and has been taken offline by the PhishDestroy takedown service. VirusTotal reports that 5 of 94 scanning engines flagged the domain as malicious, reinforcing the suspicion of abuse. The identified scam category is an investment scam, although no further details about the fraudulent offering or victim interaction have been published. Nameservers ns1.dyna-ns.net and ns2.dyna-ns.net are standard Dynadot defaults and do not provide additional attribution.
Because the site is currently offline, active exploitation is likely halted, but the underlying infrastructure—IP address, registrar, and nameserver pattern—could be reused for future campaigns. Defensive recommendations include immediately blocking the domain and its hosting IP at perimeter and DNS layers, adding the observed nameservers to any internal deny lists, and propagating the indicator set to shared threat‑intelligence feeds. Continuous monitoring of the 123.108.75.6 address block, as well as newly registered domains using Dynadot’s default nameservers, is advised to detect any resurgence of the same threat actor.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных13 recorded checks
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
Progressive JavaScript framework for building user interfaces.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of bzstart.com · checked Mar 22, 2026
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.