amlwallet[.]co
“AML Bot”
साक्ष्य सारांश
On 23 July 2026, analysis of the domain amlwallet.co was performed. The zone was registered on 21 February 2026 and, as of the assessment date, the site is taken offline. DNS resolution points to the IP address 104.21.14.97, which belongs to Cloudflare, Inc. (ASN 13335) and is geolocated in the United States. The TLS certificate presented for the host is identified as “WE1”, indicating a generic or self‑issued certificate. The page title returned by the server is “AML Bot”, which aligns with the reported brand target AMLBot.
VirusTotal scans show that seven out of ninety‑three security vendors flagged the domain as malicious, confirming a consensus of suspicion among automated scanners. The domain is listed on one external security blocklist and is actively blocked by the PhishDestroy service. Additional reputation data include a Gridinsoft trust score of zero out of one hundred, reinforcing the classification of the site as untrusted. The observed indicators collectively point to a crypto‑focused scam that leverages brand impersonation of AMLBot, a known service in the cryptocurrency space.
While the site is currently offline, the infrastructure—particularly the use of a Cloudflare edge node—suggests that the operators could reactivate the domain or duplicate the pattern on new domains. Defenders should add the domain and its associated IP address to blocklists, monitor for re‑appearance in DNS queries, and correlate any future traffic against the “WE1” certificate fingerprint. Organizations handling AMLBot‑related assets should educate users about the risk of unsolicited communications referencing AMLBot and enforce strict validation of URLs before any credential entry. Continued observation of the IP range and Cloudflare‑associated domains is recommended to detect potential re‑use of the same hosting profile.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
फॉरेंसिक इंटेलिजेंस
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।