vpass-jp[.]ttbwv[.]cn
“【重要】メンテナンスのお知らせ|VJAグループ Vpass”
vpass-jp.ttbwv.cn — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 18/95 (ADMINUSLabs, Criminal IP, BitDefender, CyRadar, ESET); PhishDestroy score 95/100. 注册商: 长沙小豆网络科技有限公司.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain vpass-jp.ttbwv.cn impersonated the Japanese VJA Group Vpass brand, presenting a fraudulent maintenance notification page titled 【重要】メンテナンスのお知らせ|VJAグループ Vpass. This site poses a credential harvesting threat by mimicking legitimate Vpass login or service update portals to steal user account credentials and personal information.
VirusTotal analysis flagged the domain with 18 detections out of 95 security vendors, including ADMINUSLabs, Criminal IP, BitDefender, CyRadar, and ESET. The domain is listed on one blocklist. It was registered on 2025-05-24 through registrar 长沙小豆网络科技有限公司. The domain resolves to IP address 2606:4700:3033::ac43:bbb5 located in the United States, hosted on AS13335 Cloudflare, Inc. The domain has no SSL certificate configured. Nameservers are cass.ns.cloudflare.com and fattouche.ns.cloudflare.com.
The site is currently offline or unreachable. Based on the low GridinSoft trust score of 0/100 and the high detection rate among security vendors, the risk level is assessed as high. Users who encountered this site should consider their credentials compromised and change passwords for any associated accounts immediately.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。