smileybins[.]co[.]ke
“My Blog”
smileybins.co.ke — Останній відомий активний (HTTP 200). Уособлення бренду: Wordpress; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 15/95 (alphaMountain.ai, BitDefender, Certego, CRDF, CyRadar); PhishDestroy score 100/100. Реєстратор: HostPinnacle Cloud.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain smileybins.co.ke is flagged as a brand‑impersonation site targeting WordPress users. Technical profiling shows the site was built on a typical WordPress stack with MySQL, PHP, Bootstrap, OWL Carousel, jQuery and jQuery Migrate, and is fronted by Cloudflare. The site presented a page titled “My Blog” and served HTTP 200 responses when reachable. The SSL certificate is a Let’s Encrypt R13 certificate, indicating normal TLS provisioning. Infrastructure analysis reveals the domain resolves to IP 84.16.249.171, an address owned by Leaseweb Deutschland GmbH (AS28753) in Germany.
Nameservers rs31.rcnoc.com and rs32.rcnoc.com belong to the same provider. Registration data lists creation on 15 February 2023 through HostPinnacle Cloud Limited. Threat intelligence shows the domain appears on one security blocklist and is currently blocked by PhishDestroy. It has been referenced in fourteen AlienVault OTX pulses and fifteen of ninety‑five VirusTotal scanners have flagged it as malicious. Gridinsoft assigns a trust score of 0 out of 100.
MX records point to the domain itself, suggesting potential email abuse. The site is presently offline, but historical evidence confirms it was used for brand‑impersonation. Defenders should continue to block the domain and its hosting IP, monitor for any re‑activation, and ensure that email filters inspect traffic to the domain’s MX endpoint. Additional scrutiny of any traffic that references the “My Blog” page title or the identified technology stack is advised, as the exact malicious payload has not been publicly disclosed.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 10 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% впевненостіBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% впевненостіOWL Carousel is an enabled jQuery plugin that lets you create responsive carousel sliders.
owlcarousel2.github.io 100% впевненостіQuery Migrate is a javascript library that allows you to preserve the compatibility of your jQuery code developed for versions of jQuery older than 1.9.
github.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of smileybins.co.ke · checked Mar 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога