Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse-contact@publicdomainregistry.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
huobcoinbt[.]net
“huobcoinbt”
huobcoinbt.net — Неперевірений. Уособлення бренду: Bitget; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 16/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 1 alert; URLScan malicious verdict; PhishDestroy score 95/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, huobcoinbt.net, is an active brand impersonation threat targeting the cryptocurrency exchange Bitget. Registered on June 24, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, it is hosted behind Cloudflare's CDN at IP 172.67.157.25 (US, AS13335). The domain's page title is 'huobcoinbt', and it returns HTTP status 200. Infrastructure analysis reveals the use of PHP, Vue.js, crypto-js, Chaport (a live chat service), and Alibaba Cloud CDN, suggesting a sophisticated phishing kit designed to mimic a legitimate exchange interface. The SSL certificate is issued by Google Trust Services (WE1). Threat intelligence from AlienVault OTX shows the domain appears in one pulse, and it is blocked by PhishDestroy. VirusTotal reports 12 of 91 security vendors flagging the domain as malicious, corroborating the high-risk classification. The domain's nameservers are ken.ns.cloudflare.com and mckinley.ns.cloudflare.com. Its Gridinsoft trust score is 0/100, and it appears on one security blocklist. Defenders should immediately block the domain, IP 172.67.157.25, and associated Cloudflare nameservers at the network level. Users should be warned not to interact with any communications referencing huobcoinbt.net, as the site is designed to harvest credentials or seed phrases from Bitget customers. Given the active status and low detection rate among vendors, phishing campaigns using this domain may still be ongoing. Network and email security appliances should be updated with this IOC. Further analysis of the hosted content is recommended to identify any redirect chains or data exfiltration endpoints.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | huobcoinbt.net |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 9 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 100% впевненостіCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіChaport is a multi-channel live chat and chatbot software for business.
www.chaport.com 100% впевненостіAlibaba Cloud CDN is a global network of servers designed to deliver high-performance, low-latency content to users around the world. It is a cloud-based service provided by Alibaba Cloud, a subsidiary of the Alibaba Group, that enables businesses to accelerate the delivery of their web content, inc
www.alibabacloud.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
“I am reporting a fraudulent cryptocurrency investment website: huobcoinbt.net. This platform presents itself as a crypto trading/investment site and shows fake account balances and profits. However, withdrawal is not processed normally and users are being pressured to make additional deposits in order to withdraw funds. In my case, I deposited funds after being misled by the platform interface and communication from the operator. When I attempted to withdraw, I was either blocked or told t”
PD-20260627-A9902B Recipient: abuse-contact@publicdomainregistry.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога