accounts[.]maxweb[.]black
“Log In | Binance”
Зведення доказів
Analysis of the domain accounts.maxweb.black indicates a confirmed phishing campaign targeting Binance users, classified as a crypto scam. The domain was registered on March 13, 2025, through Amazon Registrar, Inc., and currently resolves to the IP address 43.159.94.13, hosted in Singapore under AS139341 (ACE). At the time of assessment, the domain is offline, though it previously presented a page titled 'Log In | Binance,' directly impersonating the Binance authentication portal.
Security vendor detections on VirusTotal report 14 flags out of 95 scans, while the domain appears on one security blocklist, specifically PhishDestroy. The absence of an SSL certificate further reduces its legitimacy, corroborated by a Scamadviser trust score of 1 out of 100. Infrastructure analysis reveals the domain utilizes Amazon Route 53 nameservers (ns-1877.awsdns-42.co.uk, ns-1226.awsdns-25.org, ns-788.awsdns-34.net, and ns-416.awsdns), suggesting reliance on cloud-based hosting infrastructure.
While the domain is currently inactive, the combination of brand impersonation, low trust scores, and detection by security vendors confirms its malicious intent. Defenders are advised to block the domain and associated IP address at the network level, update endpoint protection signatures, and monitor for resurgence under similar naming conventions or hosting providers. No additional evidence of the phishing kit or user interaction data is available at this time.
Data Coverage
Сигнали безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 13.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Registration: maxweb.black
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain maxweb.black behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога