www3-vpass[.]nbeec[.]cn
“nbeec.cn | 502: Bad gateway”
www3-vpass.nbeec.cn — Контент недоступний (HTTP 502). Зведення доказів: VirusTotal 20/95 (ADMINUSLabs, BitDefender, CRDF, CyRadar, ESET); PhishDestroy score 95/100. Реєстратор: 商中在线科技股份有限公司.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, www3-vpass.nbeec.cn, is identified as a phishing site designed to mimic legitimate verification portals, likely targeting users to harvest credentials or personal data. The site presents itself as a gateway for authentication or account validation, a common tactic in credential theft campaigns. Given its offline status and lack of encryption, any interaction with this domain could expose sensitive information to unauthorized parties. Analysis indicates the domain was registered on May 17, 2025, through 商中在线科技股份有限公司, a registrar often associated with newly created fraudulent sites. The domain is flagged by 20 out of 95 security vendors on VirusTotal, confirming its malicious classification. Additionally, it lacks an SSL certificate, a critical red flag for any site handling user data. Infrastructure analysis reveals the domain resolves to 104.21.65.55, hosted on Cloudflare’s network, which is frequently leveraged by threat actors to obscure their operations. If you visited www3-vpass.nbeec.cn or entered any information on the site, immediate action is required. First, disconnect the device from the network to prevent further data exposure. Run a full antivirus scan to detect any malware or unauthorized access. Change passwords for any accounts accessed on or near the compromised device, prioritizing financial and email accounts. Monitor accounts for unusual activity and enable multi-factor authentication where possible. Report the incident to relevant authorities or your organization’s security team to assist in tracking and mitigating the threat.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога