bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link favicon

bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link

Category: Phishing

Scanned: Jun 27, 2026, 09:13 PM UTC · First seen: Jun 18, 2026 · Threat Engines: 17 / 91 · Times Scanned: 2
5 / 100 Trust Score Based on scan findings at the time of analysis
Potentially Dangerous
0 - High Risk50 - Moderate100 - No Threats
Fresh scan recommended
Last scanned 23 days ago - security status may have changed since then.
Not scanned has not been scanned yet. Hit Scan Now to check it.

Scans can take up to 5 minutes to complete. Please keep this tab open - we'll redirect you to the report when it's ready.

Failed
Scan unavailable
Scan failed
Protect yourself from potentially harmful websites
Combo Cleaner's real-time web protection module actively blocks access to scam, phishing & malware-infected websites.
★★★★★ 4.8 / 5 Recommended by PCrisk.com editors Windows · Mac · Android · iOS
Download Combo Cleaner Free scan · no signup

To use full-featured product, you have to purchase a license for Combo Cleaner. Limited seven days free trial available. Combo Cleaner is owned and operated by RCS LT, the parent company of PCRisk.com.

Screenshot of bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link Captured Jun 27, 2026
https://bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link
Screenshot of bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link
This website has been flagged as potentially harmful
Screenshot blurred for safety. Multiple security engines flagged potential threats at the time of scanning.
9 years 4 months (dweb.link)
Not Ranked - This website does not appear in the Tranco top list
Flagged by 17 of 91 engines
✓ Valid (TLS)
Protocol Labs
San Francisco, United States
cloudflare
Unknown
209.94.90.2
Domain & WHOIS Information
Registrar CSC Corporate Domains, Inc.
Registered February 24, 2017 (dweb.link)
Expires February 24, 2027
Name Servers tate.ns.cloudflare.com
DNSSEC Unsigned
Hosting Protocol Labs
This is a subdomain of dweb.link. The WHOIS data above belongs to the parent domain, not to bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link. The actual creation date of this subdomain is unknown and could be much more recent than the parent.
Reputation & Threat Check 91 security engines checked
File Scan Summary Powered by Quttera Engine
2 files scanned
No threats
1
Low Risk
0
Medium Risk
1
High Risk
0
No threats Low Risk Medium Risk High Risk
bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link/# 48.0 KB Flagged: medium risk
bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link/cdn-cgi/content?id=b9GRUvo3QleDVFDpFgQ9one_o9Ix7gCrl8pq1iih52g-1782594733.1438522-1.2.1.1-5sfg7n1oBYo9CUw.DccNeTp7Guqs0rR13XIetJWR_7o 3.8 KB No threats
Quttera flagged medium risk files - is this your website?
Investigate and remove potential threats with Quttera
Remove Malware

Quttera Web Malware Removal is a paid subscription service. Pricing, plans, and trial availability are set by Quttera. Quttera is operated by Quttera Ltd, an independent third-party company unrelated to RCS LT. PCRisk.com may earn a referral commission when users sign up through this link.

External Links & Domains
5
External Links
2 Flagged
0
Iframes
Clean
5
Referenced Domains
2 Flagged
4
Flagged Resources
Detected
1.2.1.1Flagged: Generic Suspicious Object
bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.linkFlagged: Generic Suspicious Object
http://bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link/data:image/svg+xml%3Bbase64,PHN2ZyB3aWR0aD0iNDAiIGhlaWdodD0iNDAiIHZpZXdCb3g9IjAgMCA0MCA0MCIgZmlsbD0ibm9uZSIgeG1sbnM9Imh0dHA6Ly93d3cudzMub3JnLzIwMDAvc3ZnIj4KPHJlY3Qgd2lkdGg9IjQw QFlagged: Generic Suspicious Object
https://bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link/cdn-cgi/content?id%3Db9GRUvo3QleDVFDpFgQ9one_o9Ix7gCrl8pq1iih52g-1782594733.1438522-1.2.1.1-5sfg7n1oBYo9CUw.DccNeTp7Guqs0rR13XIetJWR_7oFlagged: Generic Suspicious Object
http://bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link/data:image/svg+xml%3Bbase64,PHN2ZyB3aWR0aD0iNDAiIGhlaWdodD0iNDAiIHZpZXdCb3g9IjAgMCA0MCA0MCIgZmlsbD0ibm9uZSIgeG1sbnM9Imh0dHA6Ly93d3cudzMub3JnLzIwMDAvc3ZnIj4KPHJlY3Qgd2lkdGg9IjQw QFlagged: Generic Suspicious Object
https://bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link/cdn-cgi/content?id%3Db9GRUvo3QleDVFDpFgQ9one_o9Ix7gCrl8pq1iih52g-1782594733.1438522-1.2.1.1-5sfg7n1oBYo9CUw.DccNeTp7Guqs0rR13XIetJWR_7oFlagged: Generic Suspicious Object
https://cdn.jsdelivr.net/npm/bootstrap-icons@1.11.0/icons/shield-check.svgNot flagged
https://cdnjs.cloudflare.com/ajax/libs/font-awesome/6.5.1/css/all.min.cssNot flagged
https://fonts.googleapis.com/css2?family%3DLexend:wght@100..900&display%3DswapNot flagged
1.2.1.1Flagged: Generic Suspicious Object
bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.linkFlagged: Generic Suspicious Object
cdn.jsdelivr.netNot flagged
cdnjs.cloudflare.comNot flagged
fonts.googleapis.comNot flagged
bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link Overview

Description of bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link

This URL appears to be a content-addressed page served through an IPFS web gateway under the dweb.link domain, which is associated with decentralized web infrastructure. The hostname itself is a long content identifier rather than a conventional brand or business domain, and the underlying gateway service appears to be operated within the Protocol Labs ecosystem, with Cloudflare-based delivery visible in the scan data.

Despite the gateway-style metadata, the rendered page shown in the screenshot appears to present a simple "EmailLogin" form asking for an email address and mailbox password. That combination suggests the specific hosted content may be attempting to collect email credentials rather than providing a normal informational or application page. Based on the visible content and the scan classifications, this URL appears to function as a phishing-style credential capture page rather than a legitimate standalone website.

Safety Assessment for bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link

Multiple security signals indicate elevated risk at the time of this scan. The URL was flagged by 17 out of 91 security engines, and several web-classification sources categorized it as phishing or fraud-related. In addition, one threat database listing was present for phishing-related activity, while the malware scan reported a suspicious result with a generic heuristic detection on the page and related resources.

The screenshot materially reinforces those automated findings: it shows a generic email login form requesting a mailbox password on a non-branded IPFS gateway URL, which is a common pattern used in credential-harvesting campaigns. Although the domain's IP address is also listed on one mail-reputation blocklist, that signal is weaker on its own and should not be treated as conclusive evidence about website content; the stronger concern here comes from the multi-engine phishing consensus and the page's visible behavior.

Based on these findings, this website may pose potential risks to visitors, particularly anyone asked to enter email account credentials.

Technical Description

The site uses a valid Let's Encrypt TLS certificate that was set to expire in August 2026. It resolves to IP address 209.94.90.2, appears to be delivered through Cloudflare infrastructure, and is hosted within the Protocol Labs/IPFS gateway environment. The domain has existed for several years, but in this case that age reflects the gateway domain rather than trustworthiness of the specific content identifier being served.

DNSSEC appears to be unsigned. The page metadata references an IPFS service worker gateway, while the visible content is a credential form that does not appear consistent with the descriptive metadata. That mismatch, combined with suspicious flagged resources and phishing classifications, may indicate abuse of decentralized hosting infrastructure to publish disposable phishing content.

HTTP Redirect Chain
302 https://bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link/
200 https://bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.inbrowser.link/
Website Insights
Not Ranked
Tranco Rank
Not in Top 1M
Visitors Unknown
Category: Phishing
Rank History (30 days)
No rank data available
No cookies data available
Dispute This Score For website owners
Believe this score is inaccurate?
If you are the website owner and believe the scan results contain errors or false positives, you can submit a dispute for manual review. Our team typically responds within 1-2 business days.
You will be asked to verify your email before the dispute can be processed.
By submitting this form, you confirm that the information provided is accurate. Disputes are reviewed manually and results may take up to 48 hours to update.
One more step..
To submit your dispute for bafkreig5vx6vfnqbg7zvesjo33mqzs2mvgatdknjxuif7hcxybqrh6vmty.ipfs.dweb.link, please click the verification link we just emailed you. Once verified, we'll review it within 1–2 business days.
This report was generated automatically and is provided for informational purposes only. Results are based on a point-in-time scan and may contain false positives or incomplete data. This does not constitute a security audit or certification. No vendor in the market can guarantee a 100% detection rate. If you believe this report is inaccurate, please submit a dispute.

Share your experience with this website. Was it safe? Did you encounter any issues?