gettrumpsmemes[.]vip
“Welcome to nginx!”
gettrumpsmemes.vip — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Trump Token; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 1/95 (CRDF); PhishDestroy score 55/100. रजिस्ट्रार: NameSilo.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of the domain gettrumpsmemes.vip indicates it was actively impersonating Trump Token, a cryptocurrency-related brand, as part of a brand impersonation scam. The domain was registered on August 22, 2025, through NameSilo, LLC, and resolved to the IP address 188.114.97.3, hosted on Cloudflare's network (AS13335) in the United States. The site operated without an SSL certificate, increasing the risk of unencrypted data transmission. Infrastructure analysis reveals the use of Cloudflare nameservers (david.ns.cloudflare.com and eleanor.ns.cloudflare.com), a common tactic to obscure hosting details and evade takedowns.
At the time of assessment, the domain displayed a default 'Welcome to nginx!' page title, suggesting either misconfiguration or an attempt to conceal its true content before full deployment. One security vendor flagged the domain on VirusTotal, and it appeared on a single security blocklist (PhishDestroy), confirming its classification as malicious. The Gridinsoft trust score of 0/100 further supports its high-risk status. As of July 24, 2026, the domain has been taken offline, though its prior infrastructure remains documented for defensive purposes.
Defenders should treat this domain as part of a broader pattern of Trump Token impersonation campaigns. While the exact content of the site was not fully analyzed, the combination of brand targeting, lack of SSL, and detection by security vendors justifies blocking or monitoring the domain and its associated IP. Organizations should review logs for connections to 188.114.97.3 and assess whether internal users were exposed to the site during its active period. Further investigation into the registrar (NameSilo) and hosting provider (Cloudflare) may reveal additional linked infrastructure.
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।