Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
bclubs[.]com
“Bclub Login”
Зведення доказів
This domain is flagged for credential theft activity targeting users through a fraudulent Bclub login portal. Analysis indicates a deliberate attempt to harvest account credentials, posing elevated risk to individuals and organizations exposed to the site. Infrastructure analysis reveals the domain bclubs.com resolves to IP address 185.148.145.40, hosted by Belcloud LTD in Bulgaria. The domain was registered on January 19, 2014, through NICENIC INTERNATIONAL GROUP CO., LIMITED, with a Let's Encrypt SSL certificate (R12). Security vendor assessments on VirusTotal show 9 out of 95 detections, while the domain appears on at least one security blocklist and is actively blocked by PhishDestroy. The page title 'Bclub Login' directly correlates with known phishing templates used for credential harvesting. Mitigation requires immediate blocking of the domain and associated IP across all network security controls. Users who may have interacted with the site should reset credentials for any accounts entered on the page, particularly those tied to financial or sensitive services. Organizations should monitor for anomalous authentication attempts originating from internal networks, as compromised credentials may be leveraged for lateral movement or secondary attacks. SSL inspection policies should be reviewed to detect and prevent encrypted connections to known malicious endpoints.
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260324-59937C- Заголовок збереженої сторінки
- Bclub Login
- PDF-файл
- PDF із доказами
Повний текст доказів
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | bclubs.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 13.08.2026
Збережені докази результату
Результат і атрибуція блокування
- Результат
live_content- Доступність
content_live- Причина
content_served- Упевненість
- 90%
- Перше спостереження
- Останнє спостереження
SHA-256 доказу 41deae5cc598
Хронологія виявлення
-
Доступність
Перше збережене значення: Невідомо
993d00c35140 -
Доступність
Невідомо → Активний вміст
472c8ef9050d -
Доступність
Активний вміст → Невідомо
9735e588d764 -
Доступність
Невідомо → Активний вміст
50c3c957714d -
Доступність
Активний вміст → Невідомо
7cebcfd4071c -
Доступність
Невідомо → Активний вміст
c6ec7cfc594a -
Доступність
Активний вміст → Невідомо
ca255b61650a -
Доступність
Невідомо → Активний вміст
aaf97cfeb97a -
Доступність
Активний вміст → Невідомо
d8f7d37d7f95 -
Доступність
Невідомо → Активний вміст
e0733e975a6c
Показати всі (4)
-
Доступність
Активний вміст → Невідомо
afa49a2b04dd -
Доступність
Невідомо → Активний вміст
8451e8f7521a -
Доступність
Активний вміст → Невідомо
e70d6b0bd31a -
Доступність
Невідомо → Активний вміст
41deae5cc598
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 24.03.2026
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криміналістичні дані
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of bclubs.com · checked Mar 24, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога