alfaa[.]cash
“Alfacash - Buy, Sell & Exchange Bitcoin, Litecoin, Ethereum, XRP, EOS, Tether and many other digita…”
alfaa.cash — ढका हुआ · पहुंच योग्य (HTTP 200). ब्रांड प्रतिरूपण: Ethereum; घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 7/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CRDF, Fortinet); Spamhaus DBL_PHISH; cloaking observed; PhishDestroy score 98/100. रजिस्ट्रार: NiceNIC.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain, alfaa.cash, is actively impersonating Ethereum as part of a confirmed crypto scam operation. Registered on February 21, 2026, through NiceNIC International Group Co., Limited, the domain resolves to 104.21.30.133, an IP address hosted on Cloudflare's network (AS13335) in the United States. The site presents itself as a cryptocurrency exchange platform, with a page title explicitly listing Ethereum alongside other digital assets such as Bitcoin, Litecoin, and Tether, reinforcing its fraudulent branding alignment. Infrastructure analysis reveals the use of Cloudflare nameservers (joan.ns.cloudflare.com and robert.ns.cloudflare.com) and a valid SSL certificate issued by Google Trust Services (WE1), which may lend an appearance of legitimacy. Detected technologies include Node.js, Vue.js, Nuxt.js, Express, Google Tag Manager, Google Analytics, and HTTP/3, suggesting a modern, actively maintained frontend and backend stack. The domain has been flagged by one security vendor on VirusTotal and appears on a single security blocklist, specifically PhishDestroy. AlienVault OTX records the domain in one threat intelligence pulse, further corroborating its malicious classification. While the exact scam mechanics remain unconfirmed due to lack of direct page analysis, the domain's branding, registration details, and infrastructure strongly indicate a fraudulent scheme targeting users of Ethereum and related cryptocurrencies. Defenders are advised to block the domain and its resolving IP at network and endpoint levels, monitor for related subdomains or newly registered lookalike domains, and alert users to the impersonation risk. The domain remains active as of July 13, 2026, and should be treated as a high-risk threat vector.
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-16 02:37:47 UTC
तकनीकें · 8 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
Progressive JavaScript framework for building user interfaces.
Hybrid Vue framework for server-side rendering and static sites.
Tag management system for deploying marketing and analytics tags.
tagmanager.google.comWeb analytics service tracking website traffic and user behavior.
marketingplatform.google.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of alfaa.cash · checked Jun 27, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।