dappresolver-eportal[.]com
“Wallet Connect System - Dapp Resolver ePortal”
साक्ष्य सारांश
Analysis of the domain dappresolver-eportal.com indicates a brand-impersonation phishing campaign targeting users of the Celer network. The domain was registered on February 21, 2026, through Ultahost, Inc., and resolves to the IP address 159.100.6.5, hosted under AS214036 (Ultahost, Inc.) in Germany. Infrastructure analysis reveals the domain uses Ultahost nameservers (ns1.ultahost.com, ns2.ultahost.com, ns3.ultahost.com, ns4.ultahost.com) and lacks an SSL certificate, increasing exposure to interception risks. The page title, 'Wallet Connect System - Dapp Resolver ePortal,' suggests an attempt to mimic legitimate wallet connection or decentralized application (dApp) resolution services. While the exact content of the site remains unanalyzed, the scam type is classified as a fake airdrop, a common tactic to deceive users into disclosing credentials or transferring assets.
Detection data shows the domain appears on four security blocklists, including PhishDestroy, Polkadot, Enkrypt, and Codeesura. VirusTotal reports flagged the domain by 4 of 93 security vendors, though this does not represent exhaustive validation. Gridinsoft assigns a trust score of 0/100, further indicating malicious intent. As of July 24, 2026, the domain is offline, though prior infrastructure may remain a residual threat.
Defenders should monitor for re-registration or shifts to alternative hosting providers. Network-level blocking of the IP 159.100.6.5 and associated nameservers is recommended to mitigate potential re-emergence. Given the domain's association with Ultahost, Inc., abuse reports to the registrar may aid in preventing further misuse of this infrastructure. No evidence links this campaign to broader threat actor groups or additional domains at this time.
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-20260107-8B83FF- कैप्चर किए गए पेज का शीर्षक
- Wallet Connect System - Dapp Resolver ePortal
- PDF दस्तावेज़
- PDF प्रमाण
प्रमाण का पूरा पाठ
Acceptable Use Policy (AUP): The domain dappresolver-eportal.com is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The continued operation of this domain undermines the integrity of your services and violates your TOS, which reserves the right to suspend or terminate services for such violations.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and the fraudulent use of information, applicable to phishing schemes.
Wire Fraud Statute (18 U.S.C. § 1343): This law addresses schemes to defraud individuals or entities through electronic communications, which is relevant to the activities associated with this domain.
CAN-SPAM Act (15 U.S.C. § 7701): This act regulates commercial email and prohibits deceptive practices, including phishing, which this domain exemplifies.
Regulatory Note: Failure to take prompt action against this domain may expose your organization to legal liability and regulatory scrutiny. Immediate suspension is advised to mitigate potential risks.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
7 निगरानी वाले बाहरी स्रोत कोई मिलान नहीं
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।