j56g[.]vip
“welcome-BET365”
j56g.vip — 未验证. 品牌冒充:Bet365; 诈骗类型:Impersonation. 证据摘要: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Cluster25, CRDF, ESET); Spamhaus DBL_SPAM; CF Radar malicious; PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain j56g.vip as of July 21, 2026 shows that it is actively being used for generic phishing. The domain resolves to the IPv4 address 103.27.177.163 and is hosted on nameservers ns1.1111343.com through ns4.1111343.com. VirusTotal records indicate that one out of ninety‑one scanned security vendors flagged the domain, demonstrating that at least one detection engine has identified malicious behavior. AlienVault OTX references the domain in a single threat‑intel pulse, confirming its appearance in open‑source sharing communities. Independent containment services have taken action: PhishDestroy lists the domain as blocked, and it also appears on one public security blocklist, reinforcing the perception of malicious intent. The aggregate data therefore points to a high‑risk classification. No public information on SSL certificates, HTTP response codes, page titles, or additional infrastructure such as ASN or hosting provider is currently available, so the full extent of the attack surface cannot be precisely mapped. Defenders should treat any traffic to or from j56g.vip as suspicious and enforce deny‑list rules at perimeter firewalls, secure web gateways, and DNS resolvers. Continuous monitoring of the IP address 103.27.177.163 for anomalous connections is advised, and any endpoints that have resolved the domain should be inspected for credential‑theft artifacts. Because the domain is still marked as active, threat‑hunters should include it in threat‑intel feeds and correlate it with user‑reported phishing attempts. Updating endpoint protection tools to incorporate the latest VirusTotal and OTX indicators will improve detection of related campaigns.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。