http://binance-offer.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encoding“BINANCE EXCLUSIVE REWARDS: CLAIM NOW!”
Analysis of the domain binance-offer.netlify.app, observed on 2026-07-29, indicates that it is an active phishing infrastructure targeting users of the Binance platform. The domain is hosted on Netlify’s platform, as indicated by the registrar information. DNS resolution returns the IPv4 address 63.176.8.218; the authoritative nameserver lookup failed, returning NS_NOT_FOUND, which suggests the domain relies on Netlify’s default DNS configuration rather than custom nameservers. VirusTotal has recorded detections from 7 out of 91 scanned security vendors, demonstrating that multiple independent scanners have identified malicious behavior. The domain appears on a single external blocklist and is currently listed as blocked by the PhishDestroy feed, confirming that at least one community‑managed mitigation service recognises it as hostile. No additional public reputation signals, such as Safe Browsing verdicts, OTX tags, SSL certificate details, or HTTP response codes, are available in the supplied intelligence.
The presence of multiple vendor detections, combined with blocklist inclusion, justifies a high risk rating. Uncertainty remains regarding the exact phishing tactics employed because page‑title information, TLS parameters, and content analysis have not been disclosed. Consequently, the specific lure or credential‑harvesting mechanism cannot be described beyond the generic classification.
Defenders should treat the domain as hostile and enforce network‑level blocking of both the hostname and its resolved IP address 63.176.8.218. URL filtering solutions, DNS sinkholing, and endpoint allow‑list adjustments are recommended. Users should be warned against any unsolicited communications that reference Binance and direct them to this URL. Continuous re‑evaluation is advised as further telemetry becomes available, particularly any observations of page content, HTTP status, or additional blocklist listings, to refine detection and response actions.
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
首次存储值:可访问
可访问 → 无法访问
识别出 2 项高置信度技术
Google PageSpeed Insights — mobile performance audit of binance-offer.netlify.app · checked Jul 29, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://binance-offer.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-Encoding如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描将可疑域名提交至我们的威胁数据库——保护社区
报告最近的网络钓鱼报告和观察到的可用性变化
监控