bafkreihbey5pmomcuv4rlptqhi6ikjgkrksr62fxsmt2svmfvhqi4sygvy[.]ipfs[.]dweb[.]link
“Sign in - Professional Email”
bafkreihbey5pmomcuv4rlptqhi6ikjgkrksr62fxsmt2svmfvhqi4sygvy.ipfs.dweb.link — Неперевірений. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 4 alerts; CF Radar malicious; PhishDestroy score 100/100. Реєстратор: CSC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies bafkreihbey5pmomcuv4rlptqhi6ikjgkrksr62fxsmt2svmfvhqi4sygvy.ipfs.dweb.link as an active generic phishing domain with a high risk level. This domain has been flagged for generic phishing activities and is associated with potential credential harvesting or fraudulent transactions. No specific brand or drainer kit has been directly linked to this domain in open-source intelligence, though its configuration suggests it may be used in broader phishing campaigns targeting unsuspecting users under the guise of legitimate services.
This domain exhibits multiple indicators of compromise, including a VirusTotal detection score of 20/95 security vendors, indicating significant but not universal recognition of its malicious nature. It was registered on February 24, 2017, through CSC Corporate Domains, Inc., and resolves to the IP address 209.94.90.2. The domain is currently flagged in Google Safe Browsing (GSB) and is blocked by two major security platforms, OpenPhish and OISD, as well as hosting on the IPFS decentralized web platform. These factors underscore its long-standing presence and ongoing malicious operations in the threat landscape.
Despite active blocking by multiple security vendors and blocklists, bafkreihbey5pmomcuv4rlptqhi6ikjgkrksr62fxsmt2svmfvhqi4sygvy.ipfs.dweb.link remains operational and poses a high-risk threat. Users are advised to avoid interacting with this domain or any associated URLs. Organizations should ensure their security solutions are updated to block access to this domain and its IP address. The persistent activity of this domain, despite its age, highlights the ongoing challenge of combating long-lived phishing infrastructure and the necessity for continuous vigilance and proactive threat intelligence sharing.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | bafkreihbey5pmomcuv4rlptqhi6ikjgkrksr62fxsmt2svmfvhqi4sygvy.ipfs.inbrowser.link |
malicious | Sinkholed |
| Cloudflare DNS | bafkreihbey5pmomcuv4rlptqhi6ikjgkrksr62fxsmt2svmfvhqi4sygvy.ipfs.dweb.link |
malicious | Sinkholed |
| OpenDNS | bafkreihbey5pmomcuv4rlptqhi6ikjgkrksr62fxsmt2svmfvhqi4sygvy.ipfs.dweb.link |
phishing | Phishing Block |
| DNS4EU | bafkreihbey5pmomcuv4rlptqhi6ikjgkrksr62fxsmt2svmfvhqi4sygvy.ipfs.dweb.link |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 6 identified
IPFS is a peer-to-peer hypermedia protocol that provides a distributed hypermedia web.
ipfs.tech 100% впевненостіBackboneJS is a JavaScript library that allows to develop and structure the client side applications that run in a web browser.
backbonejs.org 100% впевненостіUnderscore.js is a JavaScript library which provides utility functions for common programming tasks. It is comparable to features provided by Prototype.js and the Ruby language, but opts for a functional programming design instead of extending object prototypes.
underscorejs.org 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of bafkreihbey5pmomcuv4rlptqhi6ikjgkrksr62fxsmt2svmfvhqi4sygvy.ipfs.dweb.link · checked May 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога