huobi[.]br[.]com
Перевірка домену huobi.br.com на фішинг і безпеку
“huobi.br.com | 521: Web server is down”
huobi.br.com — Контент недоступний (HTTP 502). Уособлення бренду: HTX; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 1/91 (Gridinsoft); PhishDestroy score 55/100. Реєстратор: Instra.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
Analysis of huobi.br.com shows it was registered on 21 February 2026 through Instra Corporation Pty Ltd and uses the CentralNIC name server set (ns1‑ns4.centralnic.net). The domain resolves to 104.16.131.120, an address owned by Cloudflare, Inc. (AS13335) located in the United States. TLS termination is provided by Google Trust Services under the WE1 certificate, indicating standard Cloudflare front‑end encryption. HTTP header inspection reveals the presence of Zendesk and HTTP/3, consistent with a generic support‑ticket infrastructure hosted behind Cloudflare.
The only visible artifact is the page title returned by the web server: 'huobi.br.com | 521: Web server is down', which signals that the site is currently inaccessible. The domain is flagged by the PhishDestroy blocklist and appears on a single external security blocklist, confirming that at least one threat‑intelligence source has observed malicious activity. VirusTotal reports that 93 scanners have examined the domain without raising detections, but the absence of a detection does not constitute evidence of legitimacy. The domain is explicitly attributed to a brand‑impersonation campaign targeting HTX.
No additional payload, phishing page content, or credential‑harvesting behavior has been captured, so the exact malicious technique remains unknown. Defenders should block the domain at the DNS and proxy layers, monitor for any future resolution changes, and watch for traffic to the underlying Cloudflare IP that may be repurposed for other malicious hosts. Continuous re‑evaluation is advised, as the domain status may change if the operators reactivate the site or shift to a new URL.
Обсяг даних12 recorded checks
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Customer support ticketing platform.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.