conilst[.]co
conilst.co की फ़िशिंग और सुरक्षा जाँच
“Rainbow Token Sale - CoinList”
conilst.co — अंतिम ज्ञात सक्रिय (HTTP 301). ब्रांड प्रतिरूपण: Across; घोटाले का प्रकार: Impersonation. साक्ष्य सारांश: VirusTotal 11/91 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, Chong Lua Dao, CyRadar); Google Safe Browsing flagged; 1 external blocklist match (ScamSniffer); PhishDestroy score 100/100. रजिस्ट्रार: Web Commerce Communica….
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of the domain conilst.co, created on 13 December 2025 and hosted behind Cloudflare (AS13335, United States), shows multiple indicators of active brand‑impersonation activity. The site returns an HTTP 301 redirect and serves a TLS certificate issued by Google Trust Services under the WE1 intermediate, confirming the use of legitimate‑looking HTTPS. The page title observed is "Rainbow Token Sale - CoinList," and the underlying phishing kit is identified as the Token Presale kit, a known template for crypto‑related credential harvesting. Google Safe Browsing flags the domain for social engineering, and 12 of 95 VirusTotal scanners have reported it as malicious, reinforcing the malicious intent.
Independent threat feeds corroborate the risk: the domain appears on two security blocklists (PhishDestroy, ScamSniffer) and is cited in one AlienVault OTX pulse. Reputation scoring from Gridinsoft is 0 / 100, indicating a lack of trust. The registrar listed is Web Commerce Communications Limited, and the authoritative nameservers are anirban.ns.cloudflare.com and cass.ns.cloudflare.com, both Cloudflare‑managed. The observed infrastructure—Cloudflare front‑end, HTTP/3 support, and an IPv6 address 2606:4700:3037::6815:69f—matches typical fast‑flux phishing deployments.
While the exact phishing landing page content has not been captured, the convergence of a brand‑specific title, a known token‑presale kit, and multiple vendor detections provides strong evidence of a credential‑stealing operation targeting users of the CoinList platform. Defenders should block conilst.co at the DNS and proxy layers, update web filtering rules to include the observed IP ranges, and monitor for similar token‑sale impersonation attempts. Continuous re‑scanning is advised to capture any changes in payload or hosting, and any observed credential submissions should be treated as compromised.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वासवायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।