सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
PhishDestroy फोरेंसिक विश्लेषण ने इस डोमेन को चिह्नित किया। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

app[.]merkl[.]today

धमकी भरा फैसला ऊँचा 58/100 साक्ष्य स्कोर
उपलब्धता सामग्री अनुपलब्ध नवीनतम अवलोकन में सामग्री अनुपलब्ध थी
URLQuery threat systems: 1 alert
27/02/2026 1 Report Sent CDN
रिपोर्ट सारांश

app.merkl.today — सामग्री अनुपलब्ध. साक्ष्य सारांश: VirusTotal 0/93; URLQuery 1 alert; PhishDestroy score 58/100. रजिस्ट्रार: PDR.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
उच्च
संदर्भ
C9711318
स्कोर
58/100

Analysis of the domain app.merkl.today, registered on February 27, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, indicates infrastructure associated with phishing activity targeting cryptocurrency users. The domain was taken offline by the time of this assessment on July 22, 2026, but prior telemetry shows it resolved to 104.21.57.60, a Cloudflare IP (AS13335) located in the US. Nameservers audrey.ns.cloudflare.com and rohin.ns.cloudflare.com confirm Cloudflare hosting, a common choice for both legitimate services and threat actors due to its proxy capabilities. No SSL certificate was detected, which is unusual for modern web services but not uncommon in low-effort phishing setups.

The domain appeared on one security blocklist, specifically PhishDestroy, though no additional public threat feeds or vendor detections were recorded at the time of analysis. The page title 'Just a moment...' aligns with Cloudflare's default challenge page, suggesting the site may have been behind Cloudflare's anti-bot protections or was in the process of being stood up. The absence of detections from VirusTotal's 93 scanned vendors does not confirm safety, as phishing domains often evade detection during early deployment or when targeting niche audiences. Defenders should treat this domain as suspicious based on its registration context, hosting pattern, and blocklist presence.

While the exact content and target brand remain unconfirmed, the use of 'merkl' in the subdomain suggests a potential focus on cryptocurrency or DeFi platforms, where 'merkle' or 'merkl' are common technical terms. Network defenders are advised to review logs for connections to 104.21.57.60 or the domain itself, particularly from endpoints handling financial or crypto-related transactions. If the domain reappears, further analysis of its HTTP responses, certificate transparency logs, and associated infrastructure is recommended to determine intent and potential brand impersonation.

VirusTotal
VirusTotal
0 det.
URLQuery
यूआरएलक्वेरी
1 threat alert
URLScan
यूआरएलस्कैन
आयु
6 mo
देखी गई स्थिति
सामग्री अनुपलब्ध
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज VirusTotal checked — no detections recorded यूआरएलक्वेरी 1 threat-system alert फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS कोई प्रमाणपत्र डेटा नहीं कौन है 6 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 1 alert
Detection System Indicator Verdict Alert
DNS4EU app.merkl.today malicious Sinkholed

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
13/13
Sent Report Recorded
Stored sent-report record for registrar PDR Ltd. d/b/a PublicDomainRegistry.com, hosting provider, 2 abuse contacts
rwqeukz3@outlook.comabuse@publicdomainregistry.com
27/02/2026

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।
Registrar (base domain) PDR IN(IN)
दुरुपयोग संपर्कrwqeukz3@outlook.com, abuse@publicdomainregistry.com
IP पता 104.21.57.60 CDN
भौगोलिक स्थानUS San Francisco, US
नेटवर्कAS13335 · Cloudflare, Inc.
रिवर्स IPviewdns.info → rapiddns.io →
मूल आईपी सीडीएन प्रॉक्सी के पीछे छिपा हुआ है। किनारे के पते के लिए रिवर्स-आईपी परिणामों में असंबंधित किरायेदार शामिल हैं; मूल का पता लगाने के लिए निष्क्रिय DNS या प्रमाणपत्र-पारदर्शिता डेटा की आवश्यकता होती है।
Registration (base domain)merkl.today · निर्मित 27/02/2026 (167d) Expires 25/02/2027
पहली अनुपलब्धता तक का समय 5 days
हम क्या मापते हैं पहली संग्रहीत दुरुपयोग रिपोर्ट से लेकर पहली बार अवलोकन तक कि सामग्री अनुपलब्ध थी, बीता हुआ समय। इससे कारण स्थापित नहीं होता.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला27/02/2026
DOM Analysisanalyzed 29/07/2026score 58/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://app.merkl.today/
नेमसर्वरaudrey.ns.cloudflare.comrohin.ns.cloudflare.com
TLS Observationscanned 15/03/2026
Case ID
ICANN OVERSIGHT Registration: merkl.today

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For the registrable domain merkl.today behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

0 / 93 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
No VirusTotal engine marked the domain malicious in the stored analysis.

साक्ष्य और बाहरी रिपोर्टें

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260227-7FF290 Recipient: abuse@publicdomainregistry.com
Page title stored with report: Just a moment...
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 188.9 KB

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/app.merkl.today"
  title="PhishDestroy threat report for app.merkl.today"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।