cxrimaxpay[.]frbg[.]biz[.]id
“𝗗𝗔𝗡𝗔 | 𝗖𝘂𝘀𝘁𝗼𝗺𝗲𝗿 𝗖𝗮𝗿𝗲 𝗗𝗔𝗡𝗔”
cxrimaxpay.frbg.biz.id — Непроверенный. Сводка доказательств: VirusTotal 12/91 (ADMINUSLabs, BitDefender, CyRadar, ESET, Forcepoint ThreatSeeker); CF Radar malicious; PhishDestroy score 88/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain cxrimaxpay.frbg.biz.id shows that it was registered on 22 February 2026 and is currently reported as offline. VirusTotal scans have returned 18 positive detections out of 95 AV engines, indicating that a substantial portion of security products classify the site as malicious. The page served a title rendered in Unicode characters – “𝗗𝗔𝗡𝗔 | 𝗖𝘂𝘀𝘁𝗼𝗺𝗲𝗿 𝗖𝗮𝗿𝗲 𝗗𝗔𝗡𝗔” – which is consistent with a targeted credential‑harvesting lure.
Infrastructure fingerprints reveal the use of the Bootstrap front‑end framework, Slick carousel, and a collection of third‑party libraries delivered via jsDelivr, cdnjs, and jQuery. Traffic was routed through Cloudflare, with the presence of Cloudflare Browser Insights and support for HTTP/3, suggesting an attempt to mask origin and leverage performance optimizations. The domain appears on a single known phishing blocklist and is explicitly blocked by PhishDestroy, confirming that at least one dedicated anti‑phishing service has taken it down.
No public SSL certificate details, IP address, or ASN information are available in the current dataset, limiting deeper network attribution. Given the combination of multiple vendor detections, the malicious page title, and confirmed blocklist presence, defenders should add cxrimaxpay.frbg.biz.id to URL filtering policies, monitor for any resurgence of the host, and ensure endpoint protection suites are updated to include the latest detection signatures. Continuous observation of Cloudflare‑associated traffic for similar patterns is advised, as threat actors often reuse the same CDN configuration for subsequent campaigns.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Технологии · 8 identified
Popular CSS framework for responsive, mobile-first web development.
Free public CDN for open-source projects, serving files from npm and GitHub.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание