worldlebirtyflnancial[.]xyz
worldlebirtyflnancial.xyz — 内容不可用 (HTTP 502). 证据摘要: VirusTotal 6/93 (ChainPatrol, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, Seclookup); PhishDestroy score 70/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This report analyzes the domain worldlebirtyflnancial.xyz, which is currently offline and presents a high risk to users. The page title "Just a moment..." suggests a Cloudflare challenge page, but the domain name closely mimics a financial brand, likely attempting to impersonate a legitimate financial institution for phishing or credential theft. The threat posed includes potential theft of login credentials, personal financial information, and unauthorized account access.
Technical evidence indicates significant malicious activity. VirusTotal reports 6 detections out of 95 security vendors, with flags from ChainPatrol, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, and Seclookup. The domain is listed on 1 blocklist. It is hosted on IP address 172.67.155.195 in the United States, associated with AS13335 Cloudflare, Inc. The domain was created on February 21, 2026, and uses an SSL certificate classified as WE1. GridinSoft trust rating is 0 out of 100, and the DOM risk score is 70.
The site is currently down or offline, reducing immediate risk of active exploitation. However, the domain creation date is recent, and the combination of low trust scores, multiple security vendor flags, and brand impersonation indicates a high risk level. Users who may have interacted with the site before it went offline should be alerted to potential credential compromise and advised to change passwords for any related accounts.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。