xrp-give[.]cc
“1 new message”
xrp-give.cc — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: XRP; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 14/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); PhishDestroy score 92/100. مسجّل النطاق: CNOBIN INFORMATION TEC….
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of xrp-give.cc as of July 23, 2026 indicates that the domain is actively leveraged for brand impersonation targeting the cryptocurrency XRP. The domain was registered on 7 November 2025 through CNOBIN INFORMATION TECHNOLOGY LIMITED and resolves to the IP address 188.114.96.3, which is owned by Cloudflare, Inc. (AS13335) and geolocated to the United States. DNS resolution uses Cloudflare’s authoritative nameservers david.ns.cloudflare.com and hera.ns.cloudflare.com, suggesting the infrastructure is hosted behind Cloudflare’s CDN and WAF services. No TLS certificate is presented for the domain, meaning HTTPS connections are not available, which is consistent with a low‑trust configuration. The Gridinsoft trust score of 0 out of 100 further confirms the site’s malicious reputation.
Multiple detection mechanisms have flagged the domain. PhishDestroy has listed it as blocked, and it appears on at least one public security blocklist. VirusTotal reports that 14 of 95 scanned security vendors identified the domain as malicious, reinforcing the suspicion of phishing activity. The page title returned by HTTP requests is “1 new message,” which does not provide any legitimate context and may be used to entice victims. The current operational status is reported as offline, indicating that the site may have been taken down or is temporarily inaccessible, but the underlying infrastructure remains observable.
Given the evidence, defenders should continue to block DNS resolution for xrp-give.cc at the network perimeter and add the associated IP address 188.114.96.3 to any deny lists, keeping in mind that the IP belongs to a shared Cloudflare range and may host other unrelated services. Monitoring of the domain’s registration renewal and any re‑appearance of active web content is advised. Organizations that hold XRP assets should educate users about unsolicited messages claiming to originate from XRP‑related services and reinforce the use of official channels only.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب