Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is ke5748362@163.com.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
bybit-nx[.]com[.]cn
“Bybitå®ç½_Bybit交ææ_Bybitä¸è½½_å约交æå¹³å°å ¥å£”
bybit-nx.com.cn — Неперевірений. Уособлення бренду: Bybit; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); URLQuery 1 alert; PhishDestroy score 66/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies bybit-nx.com.cn as a live impersonation domain targeting Bybit users through brand deception.
This domain was flagged for explicitly mimicking Bybit’s branding to deceive visitors into sharing sensitive credentials or downloading malicious software. Technical analysis reveals it resolves to IP 154.216.119.24, was registered via PDR Ltd. d/b/a PublicDomainRegistry.com on March 27, 2026, and already utilizes a Let's Encrypt SSL certificate. Notably, VirusTotal currently returns 0 detections out of 95 engines, indicating it has evaded immediate automated detection systems despite its malicious intent. Although no blocklist entries have been recorded yet, the domain’s recent creation and low detection rate suggest it is either newly operational or deliberately configured to bypass early-stage scrutiny.
Users who visited bybit-nx.com.cn should assume exposure risk and take urgent precautions. Do not enter any login credentials, API keys, or personal data on the site. Clear browser cookies and cached data related to Bybit and cryptocurrency platforms. Use a reputable password manager to check for reused passwords that may have been compromised. If you entered sensitive information, revoke API access immediately in your Bybit account, enable two-factor authentication, and monitor your account for unauthorized transactions. Report the domain to Bybit’s official support and your local cybercrime unit. Avoid clicking any links or downloading files from this domain in the future.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | bybit-nx.com.cn |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of bybit-nx.com.cn · checked Apr 7, 2026
Докази та зовнішні звіти
PD-20260407-A45E89 Recipient: ke5748362@163.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога