bafybeiclh4rdjgenba3udk2t6t7k6mg2xhf5z6vspwffh4vtbgqqrfwbwe[.]ipfs[.]dweb[.]link
“Yahoo”
bafybeiclh4rdjgenba3udk2t6t7k6mg2xhf5z6vspwffh4vtbgqqrfwbwe.ipfs.dweb.link — 内容不可用. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 23/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 5 alerts; CF Radar malicious; PhishDestroy score 100/100. 注册商: CSC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy has identified an active generic phishing site hosted on an IPFS gateway domain that mimics legitimate login pages to harvest user credentials. The landing page is designed to appear authentic but is controlled by attackers to capture any information submitted, including usernames, passwords, and multi-factor authentication codes. The threat actor behind this campaign uses social engineering tactics, such as impersonating trusted brands or services, to trick victims into providing sensitive data.
This domain was flagged by 11 out of 95 VirusTotal security vendors, indicating moderate but concerning detection across the security community. It was created on February 24, 2017, and is registered through CSC Corporate Domains, Inc. The site resolves to the IP address 209.94.90.2 and uses a Let's Encrypt SSL certificate, which may lend it an appearance of legitimacy. These details suggest the domain has been in use for years, possibly repurposed for malicious activity.
If you visited this domain and entered any personal information, immediately change your passwords for the affected accounts and enable multi-factor authentication where possible. Monitor your financial accounts and other sensitive services for unusual activity. Run a full antivirus scan on your device and consider resetting passwords from a different, trusted device. Report the incident to your organization’s security team or, if personal, to the legitimate service being impersonated.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | bafybeiclh4rdjgenba3udk2t6t7k6mg2xhf5z6vspwffh4vtbgqqrfwbwe.ipfs.dweb.link |
malicious | Sinkholed |
| OpenDNS | bafybeiclh4rdjgenba3udk2t6t7k6mg2xhf5z6vspwffh4vtbgqqrfwbwe.ipfs.dweb.link |
phishing | Phishing Block |
| DNS4EU | bafybeiclh4rdjgenba3udk2t6t7k6mg2xhf5z6vspwffh4vtbgqqrfwbwe.ipfs.dweb.link |
malicious | Sinkholed |
| Cloudflare DNS | bafybeiclh4rdjgenba3udk2t6t7k6mg2xhf5z6vspwffh4vtbgqqrfwbwe.ipfs.inbrowser.link |
malicious | Sinkholed |
| DNS4EU | bafybeiclh4rdjgenba3udk2t6t7k6mg2xhf5z6vspwffh4vtbgqqrfwbwe.ipfs.inbrowser.link |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 7 identified
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of bafybeiclh4rdjgenba3udk2t6t7k6mg2xhf5z6vspwffh4vtbgqqrfwbwe.ipfs.dweb.link · checked Apr 19, 2026
网站配置分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。