सुरक्षा रिपोर्ट पर जाएँ
Checked 09/08/2026 Ref EF2B0F2E

MALICIOUS — CRITICAL

gomberg.net की फ़िशिंग और सुरक्षा जाँच

gomberg[.]net

PhishDestroy identifies gomberg.net as an active crypto drainer domain engaged in fraudulent cryptocurrency extraction activities.

100/100 evidence score · Critical
VirusTotal
10/94
Blocklists
2 · MetaMask, SEAL
उपलब्धता
अंतिम ज्ञात सक्रिय · HTTP 200
Report / Add Evidence Appeal this listing
2026-04-15 00:16 UTCअंतिम ज्ञात सक्रिय · HTTP 200

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 10। किसी मैच की रिपोर्ट करने वाली सार्वजनिक ब्लॉक सूचियाँ: 2। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@namecheap.com. The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
3 months
Reports sent
1
Latest case ID
PD-20260414-2EA783
Current status
HTTP 200 at latest stored check
Jump to section
रिपोर्ट सारांश

gomberg.net — अंतिम ज्ञात सक्रिय (HTTP 200). घोटाले का प्रकार: Crypto Drainer. साक्ष्य सारांश: VirusTotal 10/94 (ADMINUSLabs, AlphaSOC, BitDefender, CRDF, CyRadar); URLQuery 6 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. रजिस्ट्रार: NameCheap.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

Evidence Analysis

Ref EF2B0F2E

PhishDestroy identifies gomberg.net as an active crypto drainer domain engaged in fraudulent cryptocurrency extraction activities. The domain is currently classified as an elevated security threat with confirmed malicious intent targeting digital asset holders. This platform exhibits clear indicators of a crypto drainer scheme designed to illicitly transfer cryptocurrency from unsuspecting victims' wallets.

This domain was flagged by 9 of 95 VirusTotal security vendors, indicating significant malicious activity. Registered through NameCheap, Inc., this domain resolves to IP address 172.67.193.61 and was created on July 09, 2024. The domain appears on 2 security blocklists and holds a Google Trust Services SSL certificate, attempting to appear legitimate while executing crypto drainer operations.

PhishDestroy advises all users to immediately block gomberg.net on their networks and browsers. Users who have previously interacted with this domain should transfer any remaining digital assets to newly generated wallet addresses and enable additional security measures including two-factor authentication and wallet allowlisting. Report any suspicious transactions to your wallet provider and relevant cryptocurrency authorities immediately.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
10 det.
URLQuery
यूआरएलक्वेरी
6 threat alerts
URLScan
यूआरएलस्कैन
ScamAdviser
Scamadviser
41/100
TLS प्रमाणपत्र
Google Trust Services
आयु
4 mo
देखी गई स्थिति
अंतिम ज्ञात सक्रिय 200
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज13 recorded checks
VirusTotal 10 / 94 यूआरएलक्वेरी 6 threat-system alerts फ़िशस्टैट्स checked — no match recorded ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS valid certificate, 36d कौन है 4 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई Scamadviser 41/100
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 6 alerts
Detection System Indicator Verdict Alert
DigiCert UltraDNS gomberg.net malicious Sinkholed
Cloudflare DNS ap7.supportly.au malicious Sinkholed
DigiCert UltraDNS ap7.supportly.au malicious Sinkholed
Quad9 DNS ap7.supportly.au malicious Sinkholed
Hagezi Threat Feed ap7.supportly.au malicious Sinkholed
DNS4EU ap7.supportly.au malicious Sinkholed

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
12/13
धमकी निगल ली गई
gomberg.net पहचाना गया और पूर्ण विश्लेषण के लिए कतारबद्ध किया गया
15/04/2026
URLScan.io Capture
Stored URLScan report with capture artifacts
URLScan Verdict
यूआरएलस्कैन विश्लेषण पूरा हुआ; यह वेब-कैप्चर परिणाम पृष्ठ खतरे के फैसले को नहीं बदलता है · score 0
29/07/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
10/94 recorded on VirusTotal
18/07/2026
गूगल सुरक्षित ब्राउज़िंग
15/04/2026
ब्लॉकलिस्ट का पता लगाना
में पाया गया 2 blocklists: MetaMask, SEAL
09/08/2026
Forensic Evidence Collected
Stored evidence from URLScan.io, URLQuery, stored screenshot
Technical Analysis Recorded
रिपोर्ट में संग्रहीत प्रौद्योगिकी या फोरेंसिक-विश्लेषण परिणाम शामिल हैं।
09/08/2026
Content Observed Unavailable
निगरानी ने एक अनुपलब्ध प्रतिक्रिया दर्ज की (HTTP 200); कारण स्वतंत्र रूप से स्थापित नहीं किया गया था।
09/08/2026
Sent Report Recorded
Stored sent-report record for registrar NameCheap, Inc., hosting provider, 1 abuse contact
abuse@namecheap.com
14/04/2026
डिस्ट्रॉयलिस्ट प्रकाशित
15/04/2026
Monitoring Continues
डोमेन पहुंच योग्य या पहुंच-प्रतिबंधित रहता है; भविष्य की जाँच इस अवलोकन को अद्यतन कर सकती है।

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

पेज शीर्षक
DOOR - Dapatkan Informasi Terpercaya dalam Sekejap
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Google Trust Services · valid for 36 days

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।
रजिस्ट्रार NameCheap US(US)
दुरुपयोग संपर्कabuse@namecheap.com
IP पता 172.67.193.61 CDN
भौगोलिक स्थानCA Toronto, CA
नेटवर्कAS13335 · Cloudflare, Inc.
रिवर्स IPviewdns.info → rapiddns.io →
मूल आईपी सीडीएन प्रॉक्सी के पीछे छिपा हुआ है। किनारे के पते के लिए रिवर्स-आईपी परिणामों में असंबंधित किरायेदार शामिल हैं; मूल का पता लगाने के लिए निष्क्रिय DNS या प्रमाणपत्र-पारदर्शिता डेटा की आवश्यकता होती है।
पंजीकरणनिर्मित 15/04/2026 (116d)
Elapsed Since First Report 8 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: अंतिम ज्ञात सक्रिय.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
HTTP स्थिति200
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला15/04/2026
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://gomberg.net/
नेमसर्वरyevgen.ns.cloudflare.com
MX Records10 eforward1.registrar-servers.com 10 eforward3.registrar-servers.com 10 eforward2.registrar-servers.com 15 eforward4.registrar-servers.com 20 eforward5.registrar-servers.com
TLS Fingerprint
TLS Observationvalid from 20/02/2026scanned 15/04/2026
Case ID
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।
तकनीकें · 11 identified
WordPress
CMS

Open-source CMS powering over 40% of websites worldwide.

MySQL
Databases

Open-source relational database management system.

PHP
Programming languages

Server-side scripting language designed for web development.

Yoast SEO
Slick
jQuery Migrate
JavaScript libraries

Plugin to detect and restore deprecated jQuery features.

jQuery
JavaScript libraries

Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.

HSTS
सुरक्षा

HTTP Strict Transport Security — forces browsers to use HTTPS connections only.

Cloudflare Browser Insights
Analytics RUM

Performance monitoring tool that measures website speed from real users.

www.cloudflare.com
Cloudflare
CDN

Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.

www.cloudflare.com
HTTP/3
Miscellaneous

Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.

Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

10 / 94 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
ADMINUSLabs
AlphaSOC
BitDefender
CRDF
साइरेडार
Fortinet
G-Data
Gridinsoft
MalwareURL
VIPRE
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of gomberg.net · checked Apr 15, 2026

93
Good
Performance
FCP
1.54s
First Contentful Paint
LCP
2.33s
Largest Contentful Paint
CLS
0.003
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
5.39s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें
इस रिपोर्ट को एम्बेड करेंRead-only HTML widget
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/gomberg.net"
  title="PhishDestroy threat report for gomberg.net"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।