1winbday[.]today
“1WIN - Connect Wallet & Get Birthday Bonus! 🎂”
1winbday.today — सामग्री अनुपलब्ध. घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 13 detections (engine total unavailable) (alphaMountain.ai, ArcSight Threat Intelligence, BitDefender, CyRadar, ESET); 4 external blocklist matches; PhishDestroy score 90/100.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of the domain 1winbday.today indicates it is a high-risk crypto scam targeting users with a fraudulent birthday bonus offer. The domain was registered on February 21, 2026, and resolved to the IP address 45.147.197.100, hosted on AS204601 NovoServe B.V. in the Netherlands. As of July 23, 2026, the domain is offline, though its infrastructure remains documented in threat intelligence sources. The page title, '1WIN - Connect Wallet & Get Birthday Bonus! 🎂,' explicitly promotes a wallet connection scheme, a common tactic in cryptocurrency scams designed to drain funds or harvest credentials.
The domain appears in 15 threat intelligence pulses on AlienVault OTX and is listed on five security blocklists, including PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura. These platforms flag it as a crypto scam, reinforcing its classification as malicious. Thirteen of 95 security vendors on VirusTotal detected the domain, further corroborating its fraudulent nature. The SSL certificate, issued by R11, does not mitigate the risk, as malicious actors frequently use valid certificates to lend superficial legitimacy to phishing sites. Defenders should treat this domain as a confirmed threat.
Network-level blocking of the IP 45.147.197.100 and the domain itself is recommended. Organizations handling cryptocurrency transactions should alert users to avoid interacting with any site claiming to offer wallet-based bonuses under the 1WIN brand. While the domain is currently offline, its infrastructure and historical activity warrant continued monitoring for potential re-emergence or related campaigns. No evidence suggests this is part of a broader phishing kit or affiliate network, but the consistent labeling across multiple security platforms confirms its role in crypto fraud.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।