Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
eth700-event[.]com
“Redistribution Event”
Analysis indicates that the domain eth700-event.com was registered on 21 February 2026 through NiceNIC International Group Co., Limited. The site resolves to the Cloudflare address 172.67.155.61, located in the United States and belonging to ASN 13335. The authoritative nameservers leonidas.ns.cloudflare.com and nora.ns.cloudflare.com confirm that the domain is fully proxied behind Cloudflare’s network, which also supplies the presented TLS certificate issued by Google Trust Services under the WE1 root. The server returns HTTP 200 and advertises HSTS, HTTP/3, and a Node.js/Express stack, suggesting a modern web application framework. The page title observed is “Redistribution Event”, and the listed scam type is wallet/seed phishing that impersonates the MetaMask brand.
The domain has been added to four public blocklists and is actively flagged by the anti‑phishing services PhishDestroy, MetaMask, ScamSniffer, and SEAL. Gridinsoft assigns a trust score of zero out of one hundred, reflecting extreme suspicion. VirusTotal scans show two of ninety‑five security vendors flagging the domain, reinforcing the malicious classification. Evidence confirms that the infrastructure is deliberately hidden behind Cloudflare to obscure origin, while the valid SSL certificate provides a veneer of legitimacy. The combination of a brand‑specific impersonation claim, the “Redistribution Event” title, and the wallet‑seed phishing categorisation points to an attempt to lure MetaMask users into surrendering private keys or recovery phrases.
At present, the site’s internal content has not been publicly dissected, leaving the exact phishing flow unknown. Defenders should immediately block the domain at network borders, update URL filtering policies, and add the IP address 172.67.155.61 to deny‑lists where appropriate. Monitoring for DNS queries to eth700-event.com and for traffic to the associated Cloudflare edge nodes can help detect attempted connections.
भेजी गई रिपोर्ट का रिकॉर्ड
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 1
- केस आईडी
PD-20260214-E1C5A4- कैप्चर किए गए पेज का शीर्षक
- Redistribution Event
- PDF दस्तावेज़
- PDF प्रमाण
प्रमाण का पूरा पाठ
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 स्रोत · 10/08/2026 को सिंक किया गया
पहचान समयरेखा
संग्रहीत अवलोकन कालानुक्रमिक क्रम में।
-
उपलब्धता
उपलब्धता: पहली बार unknown के रूप में देखा गया
993d00c35140 -
उपलब्धता
उपलब्धता: unknown → live_content
0b9eaca0a269 -
उपलब्धता
उपलब्धता: live_content → unknown
1bdea59ad9d1 -
उपलब्धता
उपलब्धता: unknown → live_content
e284e4a41cbc -
उपलब्धता
उपलब्धता: live_content → unknown
7cebcfd4071c -
उपलब्धता
उपलब्धता: unknown → live_content
9fb9dcc5fcfd -
संग्रहीत अवलोकन
संग्रहीत अवलोकन: alive → dead
-
संग्रहीत अवलोकन
संग्रहीत अवलोकन: dead → alive
-
उपलब्धता
उपलब्धता: live_content → unknown
ca255b61650a -
उपलब्धता
उपलब्धता: unknown → blocked
b1c318b4ec17
सभी दिखाएँ (2)
-
उपलब्धता
उपलब्धता: blocked → unknown
d8f7d37d7f95 -
उपलब्धता
उपलब्धता: unknown → blocked
3dcbb41070b7
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।