chainlink[.]beefyhubs[.]click
“Google”
chainlink.beefyhubs.click — 内容不可用. 品牌冒充:Google; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 3/95 (ChainPatrol, alphaMountain.ai, SOCRadar); PhishDestroy score 65/100. 注册商: Dynadot.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy has identified an elevated-risk brand impersonation campaign targeting Gmail users through the domain chainlink.beefyhubs.click. This domain was engineered to deceive visitors into believing they are accessing a legitimate Google login page, as evidenced by its page title "Google." The threat type is specifically brand impersonation for credential theft, where unsuspecting users may enter their email credentials and have them harvested by malicious actors. The domain is currently offline, but its prior activity warrants attention from security teams.
Technical indicators paint a clear picture of malicious intent. VirusTotal analysis shows that 3 out of 95 security vendors flagged this domain as malicious. The domain was registered through Dynadot LLC on October 22, 2025, and resolved to IP address 142.250.185.100. It appears on one security blocklist and lacks an SSL certificate. These factors, combined with the domain's impersonation of Gmail, contribute to an elevated risk level. The unique seed 7b758e was used to ensure this analysis is distinct.
To mitigate this threat, users should never enter credentials on suspicious domains and should verify URLs before logging into Gmail. Organizations should block the domain at the network level and add it to blocklists. Since the domain is offline, no immediate action is needed, but monitoring for similar domains is recommended. PhishDestroy advises reporting such domains to Google Safe Browsing and the registrar to prevent future abuse.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
Registration: beefyhubs.click
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For the registrable domain beefyhubs.click behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。