newshare[.]bwb[.]digital
“Visit the Bitget Wallet Rewards page to claim multiple token rewards!”
newshare.bwb.digital — Непроверенный. Олицетворение бренда: Bitget; Тип мошенничества: Airdrop Scam. Сводка доказательств: VirusTotal 10/91 (ChainPatrol, alphaMountain.ai, BitDefender, ESET, Fortinet); PhishDestroy score 80/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain newshare.bwb.digital shows that it was created to impersonate the cryptocurrency exchange Bitget by promising a “Bitget Wallet Rewards” airdrop. The only publicly visible indicator is the page title “Visit the Bitget Wallet Rewards page to claim multiple token rewards!” which aligns with a fake‑airdrop scam profile. The domain is registered through PDR Ltd. d/b/a PublicDomainRegistry.com and is served behind Cloudflare’s network (AS13335) with the IP address 104.21.50.164 located in the United States. Cloudflare’s HTTP/3 support and the nameservers june.ns.cloudflare.com and nikon.ns.cloudflare.com confirm that the infrastructure is fully cloud‑hosted, a common choice for rapid deployment of malicious pages. A VirusTotal scan returned a single positive detection out of 94 vendors, indicating at least one security product flagged the site.
The domain also appears on a single blocklist operated by PhishDestroy, which has added it to its phishing database. An HTTP request to the host returns a 404 status code, and the site is presently taken offline, limiting immediate access for victims. The evidence set therefore consists of registrar information, hosting details, the deceptive page title, the blocklist entry, and the single VirusTotal flag. No additional artifacts such as SSL certificate anomalies, malicious payloads, or credential‑stealing forms have been observed.
Because the domain is already offline, active mitigation focuses on updating detection rules and threat‑intel feeds. Defenders should add the domain and its associated IP address to blocklists, monitor for any re‑registration or similar naming patterns, and incorporate the page‑title string into URL‑filtering policies. Continuous observation of Cloudflare‑hosted IP ranges for new domains that reference “Bitget” or “Wallet Rewards” is recommended to catch future impersonation attempts early.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Registration: bwb.digital
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain bwb.digital behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание