htex-panel[.]at
“HTX Login | Secure Sign In to HTX Crypto Exchange”
htex-panel.at — Непроверенный. Олицетворение бренда: Apple; Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 17/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); Spamhaus DBL_PHISH; 1 external blocklist match (CryptoFirewall); CF Radar malicious; PhishDestroy score 95/100. Регистратор: registrant:.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain htex-panel.at was created on June 05, 2025 and is currently taken offline. DNS resolution points to the address 186.2.175.59, which belongs to the BZ region under ASN 59692 (IQWeb FZ‑LLC). The authoritative name servers are pns61.cloudns.net, pns62.cloudns.com, pns63.cloudns.net, and pns64.cloudns.uk. A Let's Encrypt R13 certificate secures the site, indicating that TLS was offered at the time of observation.
Web‑technology fingerprints show a WordPress stack backed by MySQL and PHP, with DDoS‑Guard present, suggesting an attempt to mitigate traffic spikes. The page title returned by the server – “HTX Login | Secure Sign In to HTX Crypto Exchange” – aligns with a credential‑phishing narrative, and the domain is explicitly catalogued as impersonating Apple, targeting the brand for credential theft. Security products PhishDestroy and CryptoFirewall have both blocked the domain, and it appears on two external blocklists. AlienVault OTX references the domain in seventeen threat‑intelligence pulses, reinforcing the malicious attribution.
VirusTotal analysis recorded seventeen detections out of ninety‑five scanning engines, confirming that multiple vendors consider the domain malicious. While the available data confirm the infrastructure, hosting, and detection history, the exact content of the login page and the mechanism for harvesting Apple credentials have not been publicly disclosed; the registrant information is also omitted. Defenders should continue to block htex-panel.at at DNS and proxy layers, add its IP 186.2.175.59 to network‑level deny lists, monitor for any resurgence of the domain or its name‑servers, and enforce TLS inspection to capture any future payloads. Ongoing threat‑intel correlation with OTX pulses and blocklist updates is advised to capture related campaign artifacts.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 4 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% уверенностиDDoS-Guard is a Russian Internet infrastructure company which provides DDoS protection, content delivery network services, and web hosting services.
ddos-guard.net 100% уверенностиАнализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of htex-panel.at · checked Mar 24, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание