bdpaws[.]xyz
“522: Connection timed out”
bdpaws.xyz — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 3/93 (alphaMountain.ai, Forcepoint ThreatSeeker, Webroot); PhishDestroy score 65/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis shows that bdpaws.xyz was registered on February 21, 2026 and is currently listed as offline, returning a Cloudflare 522: Connection timed out page title. The domain resolves to IP address 104.21.64.1, which belongs to AS13335 Cloudflare, Inc., located in the United States. An SSL certificate identified as WE1 is present on the host, but no further certificate details are available.
Threat intelligence indicates the domain appears on one security blocklist and is actively blocked by the PhishDestroy feed. VirusTotal scans have recorded detections from three of ninety‑three security vendors, confirming that at least a subset of scanners consider the domain malicious. The limited public data does not reveal the specific brand or service the site attempts to impersonate; the only observable artifact is the generic 522 timeout page, indicating that content has not been captured for deeper analysis.
Consequently, the primary uncertainty revolves around the payload or credential‑harvesting mechanisms that may have been hosted before the site was taken offline. Defenders should continue to block DNS resolution for bdpaws.xyz, ensure that network perimeter controls reference the known blocklist entry, and monitor for any re‑registration or re‑activation of the domain or adjacent subdomains using the same Cloudflare IP range. Ongoing correlation with endpoint telemetry for any recent attempts to contact the domain is advised, as the three vendor detections suggest that some client systems may have previously interacted with the site before its takedown.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。