tetherlab[.]dev
tetherlab.dev 网络钓鱼与安全检查
“tetherlab.dev | Backend & DevOps Engineer”
tetherlab.dev — 内容不可用 (HTTP 502). 诈骗类型:Crypto Scam. 证据摘要: VT 2/91 (CRDF, Gridinsoft); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 0; PD 61/100. 注册商: Gabia.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
tetherlab.dev entered the PhishDestroy evidence set on Feb 3, 2026. The stored content classification is crypto scam. The assembled evidence scores 61/100 (elevated).
One independent source is positive: VirusTotal. VirusTotal recorded 2 detections among 91 engines: CRDF, Gridinsoft on Aug 1, 2026 at 23:00 UTC. The evidence is not unanimous. The external blocklist snapshot contained no matches on Aug 7, 2026 at 18:20 UTC. URLQuery recorded no positive detection on Feb 3, 2026 at 09:12 UTC. Google Safe Browsing returned no flag on Jun 26, 2026 at 23:41 UTC. URLScan completed without a malicious verdict (score 0) on Mar 27, 2026 at 11:51 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 02:13 UTC; content was unavailable. Registration records for the domain list Gabia, Inc. as the registrar. At collection time, the hostname resolved to 220.74.49.234 on AS4766 (KIXS-AS-KR Korea Telecom, KR). The associated network metadata labels the endpoint as AS4766 Korea Telecom in Gunpo, KR. The stored server header is nginx/1.25.5. Captured page title: “tetherlab.dev | Backend & DevOps Engineer”. DOM analysis completed on Jul 28, 2026 at 02:20 UTC; stored DOM score 0/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. IoC extraction completed on Aug 2, 2026 at 04:01 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists Let's Encrypt / E7 as the certificate issuer with validity through Apr 26, 2026; checked Mar 15, 2026 at 05:55 UTC.
No target brand has been confirmed from stored page content; hostname wording alone is not treated as brand evidence. The 0/100 DOM score means that the DOM pass stored no scored indicators; it does not negate the independent source findings.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
ICANN 收到了钱。问责却没有到来。
对于这个 gTLD,上述注册商依据与 ICANN 签订的合同运营。ICANN 收取与注册、续费和转移相关的年度费用、浮动费用及按交易计收的费用。
认证:已变现。问责:请稍后再来查看。
接着,魔法开始了:ICANN 写下 RAA §3.18,注册商调查自身客户群体内部的滥用行为,受害者免费提交证据,而每一层都在等待其他人采取行动。如果这能让受害者觉得更安全,那真是太好了——看来账单确实起作用了。
所用技术 · 6 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 置信度 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 置信度 100%Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 置信度 100%Next.js is a React framework for developing single page Javascript applications.
nextjs.org 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of tetherlab.dev · checked Jun 27, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。