grass[.]io-stage2[.]app
grass.io-stage2.app — अंतिम ज्ञात सक्रिय (HTTP 301). साक्ष्य सारांश: VirusTotal 6/91 (ADMINUSLabs, Chong Lua Dao, CRDF, Fortinet, Gridinsoft); 1 external blocklist match (ScamSniffer); PhishDestroy score 80/100. रजिस्ट्रार: NiceNIC.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of the domain grass.io-stage2.app indicates a high-risk phishing infrastructure currently active as of July 24, 2026. The domain is registered through NiceNIC International Group Co., Limited and resolves to 104.21.47.102, an IP address assigned to Cloudflare, Inc. (AS13335) in the United States. The site returns an HTTP 521 status, a code commonly associated with Cloudflare-protected pages that are either down or intentionally blocking direct access, often seen in phishing campaigns leveraging Cloudflare's services to evade detection. The page title 'Just a moment...' further suggests the use of Cloudflare's interstitial challenge or captcha system, a technique frequently exploited by threat actors to filter automated security scans and delay analysis.
Infrastructure analysis reveals the domain is using Cloudflare nameservers (garret.ns.cloudflare.com and kay.ns.cloudflare.com) and an SSL certificate issued by Google Trust Services (WE1), which, while legitimate, is commonly abused in phishing operations due to its free availability and widespread trust. Technologies detected include hCaptcha, Cloudflare Browser Insights, and HTTP/3, all of which are consistent with modern phishing sites attempting to appear legitimate while hindering takedown efforts. The domain is flagged on two security blocklists, including PhishDestroy and ScamSniffer, and is assigned a Gridinsoft trust score of 0/100, indicating no established reputation and a high likelihood of malicious intent. While six of 93 security vendors on VirusTotal have flagged the domain, the exact nature of the phishing content remains unconfirmed due to the HTTP 521 status and Cloudflare protections.
No specific brand or scam type has been identified in the available data, and the page content has not been directly analyzed. Defenders should treat this domain as actively malicious and prioritize blocking it at the DNS, proxy, or firewall level.
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
Registration: io-stage2.app
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For the registrable domain io-stage2.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-14 02:42:43 UTC
तकनीकें · 4 identified
Privacy-focused CAPTCHA alternative.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of grass.io-stage2.app · checked Mar 2, 2026
साइट कॉन्फ़िगरेशन विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।