hubcok[.]digital
“Helvionex - ICO & Crypto”
hubcok.digital — Контент недоступний. Уособлення бренду: Argent; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 21/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); Google Safe Browsing flagged; PhishDestroy score 95/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain hubcok.digital was registered on February 21, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com. DNS resolution points to 104.21.28.123, an address owned by AS13335 Cloudflare, Inc., located in the United States. No TLS certificate is presented, leaving any traffic unencrypted. HTTP requests return a page title of "Helvionex - ICO & Crypto", which does not correspond to the advertised brand. The site is classified as a brand impersonation targeting the cryptocurrency brand argent.
Google Safe Browsing flags the URL as social engineering, and three independent phishing blocklists have listed the domain. VirusTotal analysis shows that 21 of 93 scanned security vendors flagged the domain as malicious, indicating a strong consensus of malicious intent. Gridinsoft assigns a trust score of 0 out of 100, and AlienVault OTX references the domain in two separate threat pulses. Additional defensive feeds—PhishDestroy, MetaMask, and SEAL—have also blocked the domain. The current operational status is offline, suggesting the hosting has been taken down or the site is otherwise inaccessible.
Evidence confirms that hubcok.digital is part of a high‑risk brand‑impersonation campaign. The specific payload or credential‑harvesting mechanisms have not been observed, and the content of the landing page beyond the title remains unknown. Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any resurgence of the IP address or associated Cloudflare sub‑domains, and update detection signatures to include the observed indicators: domain name, IP address 104.21.28.123, lack of TLS, and the Google Safe Browsing social‑engineering tag. Ongoing intelligence collection is recommended to capture any future re‑hosting attempts or related infrastructure.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога