gaib[.]network
“GAIB Deposit | Stake AID & USDC to Earn Rewards”
Observation enregistrée
Contraste de titres observé
Résumé des preuves
Analysis of gaib.network indicates a high-risk phishing domain actively impersonating a staking platform to deceive users into depositing cryptocurrency. The domain, registered through Cloudflare, resolves to IPv6 address 2a06:98c1:3121::3 and is hosted on infrastructure utilizing HTTP/3 and Cloudflare services. The page title, 'GAIB Deposit | Stake AID & USDC to Earn Rewards,' explicitly targets users with a fraudulent staking offer, a tactic consistent with brand impersonation schemes. The domain appears in 24 threat intelligence pulses on AlienVault OTX and is flagged by 4 of 95 security vendors on VirusTotal, confirming its malicious classification. It is currently listed on six security blocklists, including Polkadot, ScamSniffer, and Enkrypt, which have blocked access due to confirmed phishing activity. The SSL certificate is issued by Google Trust Services, a common practice among threat actors to lend superficial legitimacy to fraudulent sites. Infrastructure analysis reveals no legitimate association with known staking platforms or financial services. The domain remains active as of July 12, 2026, with no indications of takedown efforts. Defenders should treat this domain as malicious and implement blocking measures at the network and endpoint levels. Further investigation into associated wallet addresses or transaction patterns is recommended to identify potential victim interactions. The exact content and functionality of the site remain unanalyzed, but the available indicators confirm its role in a fake staking phishing operation.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 10/08/2026
6 sources externes surveillées Aucune correspondance
Chronologie de détection
-
VirusTotal
0 → 1
-
VirusTotal
1 → 2
-
VirusTotal
2 → 4
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif