abpayqianbaoappguanfangxiazaigw[.]com[.]cn
“ABPAY钱包APP官方下载 - 一站式数字钱包支付平台”
abpayqianbaoappguanfangxiazaigw.com.cn — 未验证. 证据摘要: VirusTotal 19/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 3 alerts; CF Radar malicious; PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis indicates that the domain abpayqianbaoappguanfangxiazaigw.com.cn was registered on 23 May 2026 and currently resolves to the IPv4 address 154.194.137.70, which is geolocated to Hong Kong and associated with Starbow Ltd. The host presents a valid TLS certificate issued by Let’s Encrypt (identifier YE1) and serves HTTP 200 responses over an Nginx stack that includes Bootstrap and enforces HSTS. The page title returned by the server reads “ABPAY钱包APP官方下载 - 一站式数字钱包支付平台”, suggesting an attempt to masquerade as an official digital‑wallet application download page. The domain is classified as generic_phishing with a high risk rating and is listed as active. It has been blocked by the PhishDestroy blocklist and appears on one additional security blocklist. Reputation scoring from Gridinsoft rates the site at 0/100, and AlienVault OTX references the domain in a single threat pulse. VirusTotal analysis shows that 16 of 91 scanning engines flagged the host as malicious, reinforcing the phishing assessment. Uncertainty remains regarding the specific payload or credential‑harvesting mechanisms employed, as no detailed content inspection has been shared. Defenders should treat any traffic to this host as hostile. Recommended mitigations include adding the domain and its resolving IP to deny‑list rules on perimeter firewalls, DNS filtering, and endpoint protection suites, monitoring for anomalous outbound connections to the IP, and ensuring users are educated about unsolicited prompts to download or install the ABPAY wallet application. Continuous re‑evaluation is advised as further indicators may emerge.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | abpayqianbaoappguanfangxiazaigw.com.cn |
malicious | Sinkholed |
| OpenDNS | abpayqianbaoappguanfangxiazaigw.com.cn |
phishing | Phishing Block |
| DNS4EU | abpayqianbaoappguanfangxiazaigw.com.cn |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
所用技术 · 3 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 置信度 100%Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
网站配置分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。