hbinance.com - suspicious URL scan, 22 Aug 2026
MalwareAnalyzer by Cyble scanned hbinance.com and returned a suspicious verdict (score 43), categorised as phishing. The page resolved to 46.8.9.228 on Gransy s.r.o. in CZ. The domain was registered 1802 days ago through Gransy, s.r.o.. 2 domains and 2 IPs were contacted, over 2 HTTP requests. This is a point-in-time observation from 22 Aug 2026; the page may have changed since.
Scan result
- Verdict: suspicious (score 43) · Confidence 49%
- Scanned URL:
https://hbinance.com/ - Domain: hbinance.com · IP: 46.8.9.228 · AS60592 · CZ
- HTTP status: 429
- Registrar: Gransy, s.r.o. · domain age 1802 days · created 2021-09-14
- TLS issuer: C=US, O=Let's Encrypt, CN=YE1 · valid to Nov 20 02: · subject CN=*.hbinance.com
- HTTP requests captured: 2 · cookies set: 1
- Scan tier: standard · observed 2026-08-22 03:49:06 UTC
Categories
- phishing
Why this verdict
- Domain impersonates binance (typosquat)
- Certificate issued < 48h ago
Contacted infrastructure
- 46.8.9.228 - AS60592 Gransy s.r.o. (Czechia)
Observed indicators
- hbinance.com
- parklogicchannel.com
- 46.8.9.228
- 172.237.146.25
- https://hbinance.com/
Questions about hbinance.com
- Is hbinance.com safe?
- No. MalwareAnalyzer scanned hbinance.com on 22 Aug 2026 and returned a suspicious verdict with a score of 43 out of 100, categorised as phishing. Treat it as hostile until it is re-checked.
- How was hbinance.com checked?
- A static pass resolved DNS, captured TLS and headers and followed the redirect chain, and where the standard tier allows, a headless browser rendered the page and recorded every request. Egress is SSRF-locked. Signatures that matched only page text are weighted far below one that matched a served file, because a page documenting malware matches the same rules.
Scanned at the standard tier - see how URL scanning works.
Scan another URL · Latest analyzed threats · All scans of hbinance.com
Scanned on MalwareAnalyzer by Cyble · Open interactive scan