aml-tron[.]sbs
aml-tron.sbs — 内容不可用. 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 2/93 (Webroot); PhishDestroy score 56/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain aml-tron.sbs was registered on 21 February 2026. Passive DNS shows it resolving to the Cloudflare‑owned address 172.67.196.27, which is advertised as being located in the United States under ASN 13335. The domain currently returns an offline HTTP status, and the associated IP address has been added to the PhishDestroy blocklist. An SSL certificate identified as “WE1” is present, indicating the site was reachable over HTTPS before being taken down.
Intelligence sources classify the activity as a crypto‑related scam; the same classification appears in the limited blocklist entry that currently lists the domain once. VirusTotal analysis reports that two of ninety‑three scanning engines flagged the domain as malicious, confirming a detection signal but not providing a consensus. No additional reputation scores, Safe Browsing alerts, or Open Threat Exchange entries are available for this indicator.
Because the site is offline, content‑level indicators such as page title, brand targeting, or malicious payloads cannot be examined, leaving the exact phishing vector uncertain. Defenders should continue to deny any network communication to 172.67.196.27, add aml-tron.sbs to DNS‑based block lists, and monitor for any re‑use of the underlying Cloudflare IP range. Remediation actions include updating intrusion‑prevention signatures, informing end‑users about the fraudulent nature of the domain, and ensuring that security telemetry captures any future resolution attempts.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
SHORTDOT 域名区 · 公开证据
.sbs
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。