Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@vercel.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
bitcoinrmf[.]io
bitcoinrmf.io 网络钓鱼与安全检查
“Bitcoin RMF - Institutional-Grade Risk Management Framework”
bitcoinrmf.io — 隐形 · 可达 (HTTP 200). 品牌冒充:Bitcoin; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 3/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft); cloaking observed; PhishDestroy score 75/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
证据摘要
PhishDestroy first observed bitcoinrmf.io on Feb 19, 2026. The hostname explicitly references Bitcoin; stored content metadata identifies the same apparent target. The captured page title is “Bitcoin RMF - Institutional-Grade Risk Management Framework”. Evidence score: 75/100 (critical).
2 independent sources recorded positive findings: VirusTotal and DNS security resolvers. VirusTotal recorded 3 detections among 91 engines: alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft on Jul 27, 2026 at 02:25 UTC. DNS security checks returned 3 blocking results across 14 tested policies: Control D Adblock, Control D Family, Control D Malware; no observation timestamp was retained.
Cloaking was recorded with HTTP 200 on Aug 9, 2026 at 01:49 UTC. The cloaking probe recorded content split conditional delivery at 1/100 on Aug 9, 2026 at 01:49 UTC: alive_content: raw=ok; http=200; via=https_proxy; server=Vercel. Registration records for the domain list Cloudflare, Inc. as the registrar. At collection time, the hostname resolved to 76.76.21.21 on AS16509 (Amazon.com, Inc.). The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery.
数据覆盖范围12 recorded checks
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of bitcoinrmf.io · checked Mar 6, 2026
证据与外部报告Independent lookups and source reports
PD-20260219-B5928B Recipient: abuse@vercel.com Victim safety and official reportingImmediate actions and verified reporting channels
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。