Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@godaddy.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
huddle01[.]network
“Huddle01 | DePIN for RTC”
This domain, huddle01.network, is currently under investigation for potential crypto credential theft targeting users of decentralized platforms. Analysis indicates the site may harvest wallet credentials, seed phrases, or private keys under the guise of a legitimate service, enabling unauthorized access to cryptocurrency holdings. The threat type is specifically credential theft aimed at crypto wallets, rather than broader phishing or brand impersonation schemes. Users should exercise extreme caution, as interaction with the site could result in immediate and irreversible financial loss. Infrastructure analysis reveals the domain was registered on January 23, 2025, through GoDaddy.com, LLC, a common registrar for both legitimate and malicious domains. The site resolves to the IP address 31.43.161.6 and uses a Let's Encrypt SSL certificate, which provides HTTPS encryption but does not validate legitimacy. As of the latest scan, VirusTotal reports 0 detections out of 95 security engines, indicating the domain has not yet been widely flagged by automated systems. This lack of detection does not confirm safety; rather, it suggests the infrastructure may still be in an early deployment phase or employing evasion techniques. If you have visited huddle01.network or entered any sensitive information, take immediate action to secure your assets. Disconnect any connected wallets from the site and revoke all permissions using a blockchain explorer or wallet management tool. Transfer remaining funds to a new, secure wallet with a fresh seed phrase, as credentials may already be compromised. Monitor all linked accounts for unauthorized transactions and report the domain to relevant threat intelligence platforms to aid in further investigation. Given the domain's recent creation and active status, users should assume any interaction with it carries a high risk of credential theft and financial loss.
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 6 identified
Framer is a no-code web design platform for designing and publishing responsive websites.
www.framer.com 100% confidenceReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% confidenceReddit Ads is an online advertising offering from Reddit.
advertising.reddithelp.com 100% confidenceLinkedin Ads is a paid marketing tool that offers access to Linkedin social networks through various sponsored posts and other methods.
business.linkedin.com 100% confidenceHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% confidenceHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% confidenceVirusTotal Analysis
Site Configuration Analysis
Evidence & External Reports
PD-20260626-7F50DB Recipient: abuse@godaddy.com Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive