claim-blackmirror[.]top
“Black Mirror”
claim-blackmirror.top — Непроверенный. Олицетворение бренда: Binance; Тип мошенничества: Wallet/seed Phishing. Сводка доказательств: VirusTotal 4/95 (alphaMountain.ai, Chong Lua Dao, Gridinsoft, SOCRadar); URLQuery 100 det.; URLScan malicious verdict; 1 external blocklist match (ScamSniffer); PhishDestroy score 100/100. Регистратор: NiceNIC.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain is flagged as a brand impersonation threat targeting Binance users, classified with an elevated risk level. The site presents a fraudulent login interface under the page title 'Black Mirror,' designed to harvest credentials from unsuspecting victims attempting to access Binance services. Analysis indicates the domain is specifically engineered to deceive users into entering sensitive account information, which can lead to unauthorized access, financial theft, or further exploitation through compromised accounts. Infrastructure analysis reveals the domain claim-blackmirror.top was registered on September 8, 2025, through NiceNIC International Group Co., Limited. It resolves to the IPv6 address 2606:4700:3034::ac43:83af and has been detected by 4 out of 95 security vendors on VirusTotal. The domain appears on 2 security blocklists and has received trust scores of 1/100 from Scamadviser and 0/100 from Gridinsoft. Current status indicates the domain has been taken offline, though historical activity and residual risk remain. Detection and blocking have been implemented by multiple threat intelligence platforms, confirming its malicious nature. To mitigate risks associated with this type of brand impersonation threat, users should verify domain authenticity by cross-referencing official communication channels and URLs provided directly by Binance. Enabling multi-factor authentication (MFA) on all accounts adds an additional layer of security, reducing the impact of credential theft. Network-level protections, such as DNS filtering or endpoint security solutions configured to block known malicious domains, should be deployed to prevent access to impersonation sites. Organizations should also monitor for unusual login attempts or unauthorized transactions linked to this domain and conduct user awareness training to recognize phishing indicators, such as mismatched URLs, suspicious page titles, or untrusted registration details.
Сигналы безопасности
Данные сетевой безопасности Registrar context
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-05 19:24:59 UTC
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание