getwlf[.]org
“World Liberty Financial - Where DeFi meets TradFi”
संग्रहीत अवलोकन
देखा गया शीर्षक अंतर
साक्ष्य सारांश
This domain is registered through NiceNIC International Group Co., Limited and was created on February 21, 2026. The authoritative nameservers are nicolas.ns.cloudflare.com and ximena.ns.cloudflare.com, both owned by Cloudflare, indicating that the site is fronted by Cloudflare's CDN and uses HTTP/3. The TLS certificate is issued by Google Trust Services under the WE1 leaf, confirming that HTTPS is correctly negotiated. A HTTP 307 temporary redirect response is observed, suggesting that the site may forward visitors to another location after the initial request. Infrastructure analysis shows the domain resolves to the address 104.21.58.120, which belongs to AS13335 Cloudflare, Inc. and is physically located in the United States.
The low Gridinsoft trust score of 0/100 and the presence on a single security blocklist further emphasize the malicious nature of the host. VirusTotal reports that 2 of 93 scanning engines have flagged the domain, providing independent confirmation of suspicious activity. The page title returned by the server is “World Liberty Financial – Where DeFi meets TradFi,” and the listed scam type is a crypto scam. The site loads client‑side frameworks including AngularJS, jQuery, and the Smartsupp live‑chat widget, which are typical of modern phishing kits that aim to appear legitimate. No additional intelligence such as specific phishing pages or credential harvesting endpoints is currently available, so the exact attack vector remains uncertain.
Defenders should immediately block DNS resolution for getwlf.org and add the IP 104.21.58.120 to outbound filtering rules. Because the domain is hosted behind Cloudflare, internal users may still attempt to reach the site via alternative subdomains; therefore, wildcard blocking of *.getwlf.org is advisable. Continuous monitoring of Cloudflare‑hosted IP ranges for new domains that share the same nameservers or page title can help detect copycat campaigns.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of getwlf.org · checked Apr 29, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।