aml-safety[.]one
“AMLBot - Comprehensive Crypto Compliance Solution | Free AML Crypto Check”
aml-safety.one — असत्यापित. घोटाले का प्रकार: Aml Scam. साक्ष्य सारांश: VirusTotal 2/95 (CRDF, Gridinsoft); URLQuery 1 alert; 1 external blocklist match (ScamSniffer); PhishDestroy score 58/100. रजिस्ट्रार: Dynadot.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain aml-safety.one was created on February 21, 2026 and is currently taken offline. Infrastructure analysis shows the domain resolves to IP 216.126.229.237, which belongs to ASN AS30823 operated by aurologic GmbH in Germany. Registration was performed through Dynadot LLC, and the authoritative name servers are ns1.dyna-ns.net and ns2.dyna-ns.net. No SSL certificate is present, indicating the site was served over plain HTTP.
The page title observed during the brief live probe was "AMLBot - Comprehensive Crypto Compliance Solution | Free AML Crypto Check," suggesting the site was masquerading as a compliance‑related service. The threat is classified as an Investment Scam, and the risk level is elevated. Detection evidence includes placement on two security blocklists—PhishDestroy and ScamSniffer—and a VirusTotal scan that yielded 2 positive detections out of 95 security vendors. No additional malware kits, brand impersonations, or post‑compromise payloads were identified.
Uncertainty remains regarding the exact phishing workflow, the presence of credential‑stealing forms, and any active command‑and‑control infrastructure, as the site has been taken offline and no further content was captured. Defensive recommendations are to block the domain and its resolved IP at network perimeters, add the domain to URL filtering and DNS threat‑intel feeds, monitor for any DNS queries to the associated name servers, and consider sinkholing the IP address if the hosting provider permits. Continuous re‑evaluation is advised in case the domain is re‑registered or the infrastructure is reused for related campaigns.
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | aml-safety.one |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।