difi-off[.]netlify[.]app
“Transfer Trust Wallet”
difi-off.netlify.app — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Trust Wallet; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 2/94 (Gridinsoft, URLQuery); URLQuery 1 alert; 1 external blocklist match (ScamSniffer); PhishDestroy score 63/100. रजिस्ट्रार: Netlify.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
PhishDestroy identifies difi-off.netlify.app (seed: f8e853) as a live phishing domain masquerading as a Trust Wallet transfer portal. This domain leverages a deceptive page title, 'Transfer Trust Wallet,' to trick users into entering wallet credentials or initiating fraudulent transfers, aligning with generic drainer kit behaviors observed in similar campaigns. The infrastructure appears designed to harvest sensitive data under the guise of legitimate cryptocurrency operations, posing a direct threat to users' digital assets.
Technical indicators confirm this domain's malicious intent: VirusTotal currently flags it with 2/95 detections despite active probing, suggesting evasion tactics are in play. Registered via Netlify, the domain resolves to IP 63.176.8.218, secured with a DigiCert SSL certificate—exploiting trust in legitimate issuers. While specific creation dates and blocklist counts remain unverified in public feeds, the absence of detections and SSL certificate use indicate a well-camouflaged operation. Google Safe Browsing (GSB) status and broader blocklist inclusion require further investigation to establish historical context.
Currently active and unblocked, difi-off.netlify.app represents an immediate risk to cryptocurrency users. Users are advised to avoid interacting with this domain and report it to their security teams. Immediate actions include DNS blocking of 63.176.8.218, updating firewall rules, and monitoring for associated IOCs in network traffic. Remaining risk is classified as under investigation pending additional telemetry; however, the domain's active status and lack of detections necessitate urgent containment to prevent further compromise.
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | difi-off.netlify.app/main.js |
malware | Detects file containing Telegram Bot API |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 3 identified
Platform for deploying and hosting modern web applications.
Free public CDN for open-source projects, serving files from npm and GitHub.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of difi-off.netlify.app · checked Apr 15, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।