backdropcyberrecovery[.]com
证据摘要
The domain backdropcyberrecovery.com was registered on February 21, 2026 and is currently listed as offline. Infrastructure analysis shows that the domain resolves to the IPv4 address 198.23.141.202, which is geolocated to the United States and associated with the host identifier "Ming Ran." The domain appears on a single security blocklist, specifically PhishDestroy, indicating that at least one reputable anti‑phishing feed has flagged it. VirusTotal scanning reports that two of ninety‑three security vendors flagged the domain, confirming the presence of malicious activity despite a relatively low detection count.
The threat classification provided is "Wallet/Seed Phishing," suggesting that the site is designed to harvest cryptocurrency wallet recovery phrases or seed phrases from unsuspecting victims. No additional intelligence such as registrar details, SSL certificate information, or page title content is available in the current dataset. The limited detection footprint and the fact that the domain is offline imply that the campaign may have been short‑lived or taken down, but the underlying infrastructure (IP address and hosting environment) could be reused for future operations.
Defenders should ensure that the IP 198.23.141.202 is added to network blocklists, monitor for any re‑registration of the domain or similar domains targeting the same scam vector, and incorporate the domain’s hash into endpoint and email security policies. Continuous ingestion of threat intel feeds that include PhishDestroy and VirusTotal updates is recommended to capture any resurgence of this indicator.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
社区报告
由 1 名社区成员报告;首次发现于 2025年8月6日
- 已存储报告
- 1
- 已报告的唯一 URL
- 1
已保存的截图
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控