my[.]dijital-borsa[.]com
“Login | Dijitalbors”
my.dijital-borsa.com — 未验证. 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, ESET); PhishDestroy score 86/100. 注册商: CNOBIN INFORMATION TEC….
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain my.dijital-borsa.com was observed on July 12, 2026 delivering a credential phishing campaign that mimics the Dijitalbors service, as indicated by the page title “Login | Dijitalbors”. The site issues an HTTP 302 response, redirecting visitors to a login endpoint designed to capture credentials. Classified as generic_phishing, the campaign carries a high risk rating and is currently active.
Infrastructure analysis shows the domain resolves to IP address 89.124.79.159, which is geolocated to the Netherlands and operated by Servers Tech Fzco. Registration was performed through CNOBIN INFORMATION TECHNOLOGY LIMITED on March 22, 2026, and the authoritative nameservers are laylah.ns.cloudflare.com and lee.ns.cloudflare.com, indicating Cloudflare DNS hosting. The web server presents a Let’s Encrypt certificate (E8) and runs a stack comprising PHP, Ubuntu, Nginx, Inertia.js, Alpine.js, jQuery, and cdnjs, all behind Cloudflare’s reverse‑proxy service.
Threat assessment is reinforced by a Gridinsoft trust score of 0 out of 100, reflecting an extremely low confidence in the site’s legitimacy. VirusTotal analysis recorded a single detection out of ninety‑five security vendors, and the domain is listed on one external blocklist maintained by PhishDestroy. These signals, combined with the observed HTTP 302 redirection and the credential‑phishing classification, substantiate the high‑risk designation.
Defenders should block the domain and its associated IP address at network perimeters and update endpoint protection signatures to include the observed indicators. Monitoring of DNS queries for the Cloudflare nameservers may reveal additional malicious domains sharing the same infrastructure. Continuous re‑evaluation of the domain’s status is advised, as the active nature of the campaign suggests ongoing attempts to harvest credentials from unsuspecting users.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
Registration: dijital-borsa.com
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For the registrable domain dijital-borsa.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 8 identified
Server-side scripting language designed for web development.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Lightweight JavaScript framework for composing behavior directly in markup.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comFast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of my.dijital-borsa.com · checked Mar 21, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。