bitget-token[.]me
bitget-token.me 网络钓鱼与安全检查
“BITGET-TOKEN”
bitget-token.me — 内容不可用 (HTTP 502). 品牌冒充:Bitget; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 10/95 (alphaMountain.ai, BitDefender, CyRadar, Fortinet, G-Data); Google Safe Browsing flagged; PhishDestroy score 80/100. 注册商: NameSilo.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain bitget-token.me was registered on September 13, 2025 through NameSilo, LLC and is currently taken offline. Technical analysis shows that it resolved to the IP address 43.212.99.130, which belongs to the Amazon.com, Inc. network (AS16509) and is geolocated in Taiwan. The authoritative nameservers listed are dylan.ns.cloudflare.com and zoe.ns.cloudflare.com, indicating use of Cloudflare DNS services. No SSL certificate was observed for the domain, meaning communications would have been unencrypted if the site were accessed.
The page title returned by the server was "BITGET-TOKEN," and the domain explicitly impersonates the cryptocurrency exchange brand Bitget, as indicated by the brand target field. Google Safe Browsing flagged the site for social engineering, a classification consistent with the listed scam type of "Crypto Scam." The domain appears on one security blocklist and is actively blocked by the PhishDestroy service. VirusTotal scans reported that ten of ninety‑five security vendors flagged the domain, reinforcing the malicious assessment. Additionally, Gridinsoft assigned a trust score of 0 out of 100, the lowest possible rating.
While the site is no longer reachable, the available evidence confirms that the domain was used for brand‑impersonation phishing aimed at cryptocurrency users. Defenders should continue to block the domain and its associated IP address in network and endpoint filters, monitor for any future reuse of the IP range, and enforce TLS for all outbound traffic to prevent accidental connections to non‑TLS services. Organizations should also update threat intelligence feeds with the domain and its indicators of compromise to improve detection across security controls.
安全信号
网络安全情报 Registrar context
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。