revbit[.]net
revbit.net — Непроверенный. Сводка доказательств: VirusTotal 3/91 (Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 81/100. Регистратор: Hostinger.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy first observed revbit.net on Jul 27, 2026. Current evidence score: 81/100 (critical).
One source contains a positive finding: VirusTotal. VirusTotal recorded 3 detections among 91 engines: Forcepoint ThreatSeeker, Gridinsoft, SOCRadar on Aug 13, 2026 at 06:28 UTC. Non-positive and contextual checks: AlienVault OTX listed 3 community pulse references (not vendor detections) on Aug 13, 2026 at 06:30 UTC. The separate external-blocklist snapshot contained no matches on Aug 28, 2026 at 10:20 UTC. Google Safe Browsing returned no flag on Aug 13, 2026 at 06:29 UTC.
The collector marked the hostname reachable on Aug 27, 2026 at 22:15 UTC, but did not retain the HTTP response code. Registration records for the domain list HOSTINGER operations, UAB as the registrar. At collection time, the hostname resolved to 185.107.56.85 on AS43350 (NForce Entertainment B.V.). The recorded endpoint location is Roosendaal, NL. The evidence archive retains 1 visual capture from Cloudflare Radar; no page title was retained, so the captures preserve the landing-page appearance. TLS metadata lists Let's Encrypt as the certificate issuer with validity through Oct 2, 2026; checked Aug 11, 2026 at 13:02 UTC.
Only one source contains a positive finding; no second positive source is stored. The stored fields do not identify an impersonated brand or victim interaction.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 11 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% уверенностиNode.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100% уверенностиNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% уверенностиVue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 100% уверенностиOpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 100% уверенностиApache is a free and open-source cross-platform web server software.
httpd.apache.org 100% уверенностиGoogle Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of revbit.net · checked Aug 11, 2026
Доказательства и внешние отчеты
“This is a coordinated "frozen order" exchange scam operated through a Telegram account named "Flowisland Support." The group poses as a cryptocurrency exchange service. Method of operation: After a victim sends crypto for a swap (SOL to TRX), the operators claim the order is "frozen" due to a fabricated network error — e.g. a "7th validator error" on Solana, or a claimed amount mismatch (5.55 vs 5.56 SOL). No such error exists; this is a pretext. They then demand the victim make a second ident”
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание