aivile-claim[.]pages[.]dev
“AIVille”
aivile-claim.pages.dev — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Across; घोटाले का प्रकार: Crypto Drainer. साक्ष्य सारांश: VirusTotal 1/93 (Phishing Database); PhishDestroy score 55/100. रजिस्ट्रार: Cloudflare.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
On July 24, 2026 analysis flagged the domain aivile-claim.pages.dev as a high‑confidence wallet/seed phishing operation that impersonates the Across brand. The domain was registered through Cloudflare, Inc. on February 21, 2026 and resolves to the Cloudflare‑owned address 188.114.96.3, located in the United States under ASN 13335. DNS resolution is served by annalise.ns.cloudflare.com and rohin.ns.cloudflare.com, confirming the use of Cloudflare’s authoritative name‑servers. HTTP inspection returned a 403 status code, while the server advertised HSTS and HTTP/3 support, indicating a modern web stack. TLS termination is performed by a Google Trust Services certificate (WE1), which is typical for Cloudflare‑proxied sites.
The page title presented by the origin server is "AIVille," a string not directly tied to the impersonated brand, and no additional page content was captured before the site was taken offline. Reputation checks show a Gridinsoft trust score of 0 / 100 and a single security blocklist entry. VirusTotal reported one positive detection out of 93 scanned vendors, reinforcing the malicious classification. PhishDestroy also listed the domain as blocked.
The available evidence points to a credential‑stealing infrastructure aimed at extracting cryptocurrency wallet seeds from users who believe they are interacting with the legitimate Across service. Uncertainty remains regarding the exact phishing flow, hosting of malicious payloads, and whether additional infrastructure shares the same IP range. Defenders should block the domain and its resolving IP at perimeter and DNS layers, monitor for new subdomains under the same Cloudflare account, and incorporate the indicator into threat‑intel feeds. Continuous observation of Cloudflare‑originated IPs linked to wallet‑related phishing campaigns is recommended to pre‑empt future impersonation attempts.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% विश्वासCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वासवायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of aivile-claim.pages.dev · checked Apr 12, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।