Issue ID 8e381377fdfa (PHISHING URL)

https://safepal.bid/


Generated at 2025-02-06 19:58:21 GMT+2:00

EN flag EN
EN flag EN
RU flag RU
ZH flag ZH
DE flag DE
ES flag ES
JA flag JA
IS flag IS
This incident is currently under investigation.

APVA found evidence that URL is currently hosting a phishing attack against Safepal Wallet.

URL Details

IP address 185.232.204.56
Country Finland flag Finland
RegistrarPDR Ltd. d/b/a PublicDomainRegistry.com
Registrydot Bid Limited
Netblock ownerAS50053 Individual Entrepreneur Anton Levin

WHOIS Information

% IANA WHOIS server
% This query returned 1 object

refer:        whois.nic.bid

domain:       BID

organisation: dot Bid Limited
address:      2nd Floor, Leisure Island Business Centre, Ocean Village
address:      Gibraltar  GX11 1AA
address:      Gibraltar

contact:      administrative
name:         Edgar Charles Andrew Lavarello
organisation: Pricewaterhousecoopers Ltd.
address:      327 Main Street
address:      Gibraltar  GX11 1AA
address:      Gibraltar
phone:        +350 200 73520
e-mail:       [email protected]

contact:      technical
name:         IANA Contact
organisation: GoDaddy Registry
address:      100 S. Mill Ave, Suite 1600
address:      Tempe AZ 85281
address:      United States of America (the)
phone:        +1 480 505 8800
fax-no:       +1 480 624 2546
e-mail:       [email protected]

nserver:      A.NIC.BID 2001:dcd:1:0:0:0:0:10 37.209.192.10
nserver:      B.NIC.BID 2001:dcd:2:0:0:0:0:10 37.209.194.10
nserver:      C.NIC.BID 2001:dcd:3:0:0:0:0:10 37.209.196.10
nserver:      NS1.DNS.NIC.BID 156.154.144.25 2610:a1:1071:0:0:0:0:19
nserver:      NS2.DNS.NIC.BID 156.154.145.25 2610:a1:1072:0:0:0:0:19
nserver:      NS3.DNS.NIC.BID 156.154.159.25 2610:a1:1073:0:0:0:0:19
ds-rdata:     64954 8 2 72f2c783cc339208a8dfe0411272ce3a327c4610b3fd6dd67b6e4c5b27b868bb

whois:        whois.nic.bid

status:       ACTIVE
remarks:      Registration information: http://nic.bid

created:      2014-02-13
changed:      2024-05-11
source:       IANA

Domain Scan Results

Security Vendor Result
VirusTotal icon VirusTotal 15/94
Spamhaus icon Spamhaus Listed
Cisco Talos icon Cisco Talos Malware
Norton icon Norton Warning
Quad9 icon Quad9 Listed

Was this report sent incorrectly?

Please report the error to us at [email protected].