babitevip[.]com
babitevip.com 网络钓鱼与安全检查
“im钱包下载-最新imtoken钱包安卓版下载-imtoken钱包官方app下载-imtoken钱包下载地...”
babitevip.com — 内容不可用 (HTTP 502). 证据摘要: VT 11/93 (alphaMountain.ai, Cluster25, CRDF, Emsisoft, Fortinet); URLQuery 1 alert; URLScan no malicious verdict; GSB no flag; BL 0; PD 89/100. 注册商: Gname.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy first observed babitevip.com on Jan 31, 2026. The captured page title is “im钱包下载-最新imtoken钱包安卓版下载-imtoken钱包官方app下载-imtoken钱包下载地址- 2025热钱包app”. Current evidence score: 89/100 (critical).
Positive findings are stored from 2 sources: VirusTotal and URLQuery. VirusTotal recorded 11 detections among 93 engines: alphaMountain.ai, Cluster25, CRDF, Emsisoft, Fortinet, G-Data, Gridinsoft, Netcraft, SOCRadar, Sophos, Webroot on Jul 18, 2026 at 20:45 UTC. URLQuery recorded 1 threat-system alert on Jan 31, 2026 at 13:52 UTC. Non-positive and contextual checks: The external blocklist snapshot contained no matches on Aug 7, 2026 at 18:20 UTC. Google Safe Browsing returned no flag on Mar 2, 2026 at 20:23 UTC. URLScan completed without a malicious verdict on Jul 29, 2026 at 02:54 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:48 UTC; content was unavailable. Registration records for the domain list Gname.com Pte. Ltd. as the registrar. At collection time, the hostname resolved to 23.225.83.186 on AS40065 (CNSERVERS - CNSERVERS LLC, US). The IP and ASN identify shared CDN edge infrastructure; the origin server is not established by this address. The stored server header is nginx. DOM analysis on Jul 27, 2026 at 02:21 UTC returned 88/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. TLS metadata lists Let's Encrypt / R13 as the certificate issuer with validity through Apr 26, 2026; checked Mar 15, 2026 at 05:53 UTC.
The content indicators and 2 positive source findings support the current phishing classification. The stored fields do not identify an impersonated brand or victim interaction.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | babitevip.com |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
ICANN 收到了钱。问责却没有到来。
对于这个 gTLD,上述注册商依据与 ICANN 签订的合同运营。ICANN 收取与注册、续费和转移相关的年度费用、浮动费用及按交易计收的费用。
认证:已变现。问责:请稍后再来查看。
接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of babitevip.com · checked Mar 2, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。