kbsaach[.]com
kbsaach.com 网络钓鱼与安全检查
“HOME | Online banking”
kbsaach.com — 隐形 · 可达 (HTTP 302). 品牌冒充:Google; 诈骗类型:Banking Phishing. 证据摘要: VT 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 0; cloaking observed; PD 100/100. 注册商: Dynadot.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy first observed kbsaach.com on Sep 20, 2025. Stored content metadata identifies Google as the apparent target. The captured page title is “HOME | Online banking”. Page analysis recorded additional brand references to Mastercard. Stored page analysis classifies the content as banking phishing. Current evidence score: 100/100 (critical).
One source contains a positive finding: VirusTotal. VirusTotal recorded 14 detections among 91 engines: ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, Lionic, Sophos, Webroot on Jul 27, 2026 at 03:32 UTC. Non-positive and contextual checks: The external blocklist snapshot contained no matches on Aug 7, 2026 at 18:20 UTC. URLQuery recorded no positive detection; no observation timestamp was retained. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC. URLScan completed without a malicious verdict on Jul 29, 2026 at 02:58 UTC.
Cloaking was recorded with HTTP 302 on Aug 7, 2026 at 10:17 UTC. The cloaking probe recorded status split conditional delivery at 4/100 on Aug 7, 2026 at 10:17 UTC: redirect: raw=redirect_302; http=302; via=https_proxy; location=http://instantfwding.com/?dn=kbsaach.com&pid=7PO2UM885; server=Apache. Registration records for the domain list Dynadot LLC as the registrar and Aug 9, 2025 as the creation date. At collection time, the hostname resolved to 163.61.188.89 on AS153568 (NEWDHAKAHARDWARE-AS-AP NEW DHAKA HARDWARE, BD). The recorded endpoint location is New York City, US. The stored server header is LiteSpeed. DOM analysis on Apr 23, 2026 at 19:23 UTC returned 25/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. TLS metadata lists Let's Encrypt / R13 as the certificate issuer with validity through Mar 30, 2026; checked Mar 11, 2026 at 12:44 UTC.
Stored content provides classification context, but only one source contains a positive finding.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
ICANN 收到了钱。问责却没有到来。
对于这个 gTLD,上述注册商依据与 ICANN 签订的合同运营。ICANN 收取与注册、续费和转移相关的年度费用、浮动费用及按交易计收的费用。
认证:已变现。问责:请稍后再来查看。
接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。