goldtethers[.]com
“Tether Gold - The World's Leading Gold Token”
साक्ष्य सारांश
This investigation documents the infrastructure and detection profile of goldtethers.com, a domain observed to impersonate the Binance brand in a wallet/seed phishing campaign. The domain was registered through NameSilo, LLC on February 21, 2026 and resolves to the IP address 188.114.97.3, which is assigned to AS13335 Cloudflare, Inc. and geolocated to the United States. No TLS certificate is present; the site operates without HTTPS, which is consistent with the lack of an SSL certificate in the intelligence. The page title returned by the server is “Tether Gold – The World’s Leading Gold Token,” indicating an attempt to leverage the Tether Gold token name while targeting Binance users.
The domain has been blocked by PhishDestroy and appears on a single security blocklist. VirusTotal analysis shows that two of ninety‑five security vendors flagged the domain, reinforcing its malicious classification. Gridinsoft assigned a trust score of 0 out of 100, reflecting an extremely low reputation. The current operational status is offline, and the threat is rated elevated.
Defenders should add goldtethers.com and its resolving IP 188.114.97.3 to network‑level deny lists, monitor DNS logs for any re‑registration attempts, and enforce strict outbound filtering for connections to Cloudflare‑hosted IP ranges that resolve to newly created domains lacking TLS. Continuous threat‑intel feeds should be consulted for any resurgence of the domain or related Tether‑themed impersonation campaigns targeting Binance users. Incident response teams should also consider updating phishing‑detection signatures to include the observed page title and the specific brand‑impersonation pattern. Regular review of registrar activity, particularly NameSilo, may reveal additional domains created in the same timeframe that could be part of a broader campaign.
भेजे गए प्रमाण का स्नैपशॉट
- भेजा गया
- लेज़र रिकॉर्ड
- 2
- केस आईडी
PD-20260124-C1F537
प्रमाण का पूरा पाठ
Acceptable Use Policy (AUP): The domain goldtethers.com is engaged in phishing activities, which directly contravenes the AUP by facilitating fraud and deception.
Terms of Service (TOS): The activities associated with goldtethers.com violate the TOS, which reserves the right to suspend or terminate services for any illegal activities, including those related to phishing.
Applicable Laws (US):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: This law prohibits unauthorized access to computers and networks, which is applicable to phishing schemes that deceive users into providing sensitive information.
Wire Fraud - 18 U.S.C. § 1343: This statute addresses fraudulent schemes that utilize electronic communications, including phishing, to obtain money or property under false pretenses.
CAN-SPAM Act - 15 U.S.C. § 7701: This law regulates commercial email and prohibits deceptive practices in electronic communications, which are inherent in phishing activities.
Regulatory Note: Failure to act on this report may result in regulatory scrutiny and potential liability under applicable laws. Immediate action is recommended to mitigate risks associated with hosting this domain.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।