chaingpt[.]dev[.]buidl[.]so
“Buidl.so | A Global Community of Web3 Founders, Investors, & Mentors”
已存储的检测结果
内容伪装警报
- 伪装类型
status_split- 伪装评分
- 1/6
证据摘要
Analysis indicates that the domain chaingpt.dev.buidl.so was registered on May 28 2022 through NameCheap, Inc. The site is currently active and is listed as a Google brand‑impersonation campaign. The public page title observed is “Buidl.so | A Global Community of Web3 Founders, Investors, & Mentors,” which does not directly reference Google, suggesting that the malicious content may be delivered via hidden endpoints or redirects that have not been publicly disclosed. Network infrastructure shows the domain resolves to IP 76.76.21.93, which belongs to the Amazon.com, Inc. network (AS16509) and is hosted in the United States. The domain serves an HTTP 308 permanent redirect response, and TLS is provided by a Let’s Encrypt certificate (R13). DNS is managed by dns1.registrar-servers.com and dns2.registrar-servers.com. Detected web technologies include a Vercel hosting environment, the HSTS security header, and Google Analytics tracking scripts. Threat‑intel feeds report that six of ninety‑five VirusTotal scanners flagged the domain as malicious, and Gridinsoft assigns a trust score of 0 / 100. The domain appears on a single security blocklist and has been blocked by PhishDestroy, confirming active mitigation by at least one anti‑phishing service. The observed scam type is classified as tech‑support, aligning with typical credential‑harvesting tactics that target users seeking assistance with Google services. Open questions remain regarding the exact phishing payload, the presence of any credential‑capture forms, and whether additional subdomains are used to amplify the campaign. Defenders should block the domain at perimeter and DNS layers, monitor for outbound connections to the resolved IP, and enforce multi‑factor authentication for Google accounts to mitigate credential compromise. Continuous reconnaissance of the associated IP range and periodic re‑scanning of the domain are recommended to detect any changes in hosting or content.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of chaingpt.dev.buidl.so · checked Mar 2, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控