MALICIOUS — CRITICAL
ganges-ae[.]com
PhishDestroy has identified ganges-ae.com as an active crypto drainer phishing domain with an elevated risk level.
- VirusTotal
- 9/91
- Blocklists
- No stored match
- Disponibilité
- Contenu indisponible · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
ganges-ae.com — Contenu indisponible (HTTP 502). Type d'arnaque : Crypto Drainer. Résumé des preuves: VirusTotal 9/91 (Abusix, ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar); URLQuery 2 alerts; Spamhaus DBL_PHISH; PhishDestroy score 82/100. Bureau d’enregistrement: Realtime.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Evidence Analysis
PhishDestroy has identified ganges-ae.com as an active crypto drainer phishing domain with an elevated risk level. This domain is designed to impersonate legitimate cryptocurrency services and exfiltrate user funds through deceptive transaction prompts. Threat actors often host drainers on newly registered domains with misleading branding to exploit user trust. This domain was flagged by 8 out of 95 VirusTotal security vendors, indicating significant malicious intent. It was registered through Realtime Register B.V. on February 25, 2026, and resolves to IP 104.21.23.201. The domain possesses a Google Trust Services SSL certificate, which may lend false legitimacy to potential victims. Despite this, the low trust scores across security platforms underscore the elevated risk associated with this site. To mitigate exposure to this threat, users should avoid interacting with ganges-ae.com or any unsolicited links associated with it. Verify the legitimacy of cryptocurrency platforms by cross-referencing official websites and community channels. PhishDestroy recommends checking suspicious domains against its database before proceeding with any transactions. Enable wallet and browser security features to flag malicious transaction prompts, and report suspicious activity to relevant authorities immediately.
Couverture des données13 recorded checks
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologies · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.