bitgetai[.]club
“Web3 Wallet Login”
bitgetai.club — असत्यापित. ब्रांड प्रतिरूपण: Bitget; घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 4/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 71/100. रजिस्ट्रार: Dynadot.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis indicates bitgetai.club operates as an active impersonation of the Bitget brand targeting cryptocurrency users through a Web3 wallet login page. The domain was registered via Dynadot LLC on February 21 2026 and currently resolves to IP address 185.18.222.225 located in Japan. It returns an HTTP 302 status and presents the exact page title Web3 Wallet Login while employing technologies including PHP ThinkPHP Nginx Vue.js OpenResty jQuery and HSTS. Nameservers listed are ryan.ns.cloudflare.com and simone.ns.cloudflare.com with an SSL certificate issued by Let's Encrypt under serial E8.
Infrastructure analysis reveals the domain appears on one security blocklist and records a Gridinsoft trust score of 0/100. VirusTotal detection stands at 2 out of 95 vendors. The impersonation matches known patterns of cryptocurrency scams that redirect visitors to harvest wallet credentials. The site remains reachable and has not been taken down as of the July 12 2026 report date.
Defenders should treat any traffic to this domain as high risk and block it at network and endpoint layers. Blocking the resolving IP 185.18.222.225 and monitoring for similar subdomains under the .club TLD are immediate steps. Because the domain uses Cloudflare nameservers investigators must also review associated edge configurations when correlating logs. Continued observation of the HTTP 302 responses can reveal redirect chains used to evade simple filters.
Uncertainty remains around the full extent of credential collection infrastructure behind the 302 responses and whether additional domains share the same backend. No direct evidence confirms the exact phishing kit in use although the listed technologies suggest a custom stack rather than a mass-produced template. Regular rechecking of the domain status and integration of the provided IP and nameserver indicators into threat feeds will help maintain coverage against this impersonation campaign.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें · 7 identified
Server-side scripting language designed for web development.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Progressive JavaScript framework for building user interfaces.
Web platform based on Nginx with LuaJIT for scalable web apps.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of bitgetai.club · checked Mar 2, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।