सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 2। किसी मैच की रिपोर्ट करने वाली सार्वजनिक ब्लॉक सूचियाँ: 2। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
6 months
Reports sent
1
Current status
HTTP 200 at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

groupman[.]net

“ICO Landing Page 2 - My Blog”

धमकी भरा फैसला गंभीर 90/100 साक्ष्य स्कोर
उपलब्धता अंतिम ज्ञात सक्रिय नवीनतम संग्रहीत रीचैबिलिटी अवलोकन
वायरस का कुल पता लगाना: 2/93 संग्रहीत ब्लॉकलिस्ट मिलान: 2 अंतिम ज्ञात सक्रिय
04/02/2026 1 Report Sent

साक्ष्य सारांश

आलोचनात्मक
Evidence score
90/100

This domain, groupman.net, is flagged as a high-risk generic_phishing threat targeting cryptocurrency investors through an ICO-themed landing page. Analysis indicates the domain was designed to deceive users into participating in fraudulent initial coin offerings, leveraging social engineering tactics to extract sensitive information or funds. The page title, 'ICO Landing Page 2 - My Blog,' further supports this assessment, as it mimics legitimate ICO promotion sites commonly used in phishing campaigns. Infrastructure analysis reveals the domain was registered on February 21, 2026, through NameSilo, LLC, and resolves to the IP address 209.124.66.7. Security vendor detections on VirusTotal report 12 out of 95 engines flagging the domain as malicious, while it appears on four distinct security blocklists. The SSL certificate is issued by Let's Encrypt, a common choice for both legitimate and malicious sites due to its accessibility. Additional technical indicators include the use of LiteSpeed web server technology, HSTS enforcement, and HTTP/3 protocol support. The domain has been assigned a trust score of 0/100, and it is actively blocked by multiple security mechanisms, including MetaMask, SEAL, PhishDestroy, and InversionDNS. Mitigation steps for this specific threat type include immediate blocking of the domain and its associated IP (209.124.66.7) at the network perimeter. Organizations should ensure endpoint protection systems are updated to recognize the domain and its indicators of compromise. Given the ICO phishing context, user awareness training should emphasize the risks of interacting with unverified cryptocurrency investment pages, particularly those hosted on recently registered domains. Network logs should be reviewed for any prior connections to groupman.net or its IP, and affected systems should undergo forensic analysis to detect potential credential theft or unauthorized transactions. Proactive monitoring for similar domains registered through NameSilo or resolving to the same IP range is recommended to prevent follow-up attacks.

भेजे गए प्रमाण का स्नैपशॉट

भेजा गया
लेज़र रिकॉर्ड
1
केस आईडी
PD-20260204-82BE53
PDF दस्तावेज़
PDF प्रमाण
प्रमाण का पूरा पाठ
Policy Violations:
Section 3.1 of AUP: The domain groupman.net is being utilized for phishing activities, which constitutes a clear violation of your Acceptable Use Policy prohibiting illegal activities and fraud.
Section 5.2 of TOS: The domain is engaged in deceptive practices aimed at misleading users, which allows for immediate suspension or termination of services as outlined in your Terms of Service.
Applicable Laws (US):
Computer Fraud and Abuse Act (18 U.S.C. § 1030): This law prohibits unauthorized access to computers and the fraudulent use of information, which is applicable to phishing schemes.
Wire Fraud (18 U.S.C. § 1343): Engaging in schemes to defraud individuals via electronic communications, such as phishing, is a violation of this statute.
CAN-SPAM Act (15 U.S.C. § 7701 et seq.): This law regulates commercial email and prohibits misleading information, which is relevant to the deceptive nature of the communications associated with this domain.
Regulatory Note: Failure to take appropriate action against groupman.net may result in liability under applicable laws and could lead to regulatory scrutiny. Immediate compliance is advised to mitigate potential legal repercussions.
VirusTotal
VirusTotal
2 det.
TLS प्रमाणपत्र
समाप्त या असत्यापित -65d
देखी गई स्थिति
अंतिम ज्ञात सक्रिय HTTP 200
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1

Data Coverage

VirusTotal 2 / 93 यूआरएलक्वेरी checked — no detections recorded फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है not parsed स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंसRegistrar context
Registrar context NameSilo
Stored registration data identifies NameSilo as the registrar. PhishDestroy maintains separate registrar investigations; that broader material is contextual and is not an independent detection for this domain.
Review source investigation

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
12/13

ब्लॉकलिस्ट कवरेज

10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026

8 निगरानी वाले बाहरी स्रोत कोई मिलान नहीं

पहचान समयरेखा

  1. डोमेन स्थिति

    पहुँच योग्य → पहुँच योग्य नहीं

  2. Cloudflare Radar

    Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें

  3. VirusTotal

    2 → 12

  4. डोमेन स्थिति

    पहुँच योग्य नहीं → पहुँच योग्य

सहेजा गया कैप्चर

पेज शीर्षक
ICO Landing Page 2 - My Blog
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता Let's Encrypt / R12

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
गूगल सुरक्षित ब्राउज़िंग ध्वजांकित Social engineering checked 27/06/2026
सर्वर / ASN LiteSpeed · AS19905 SECURITYSERVICES - Vercara, LLC, US
IP प्रतिष्ठा IP abuse confidence 0/100 0 reports checked 28/07/2026
रजिस्ट्रार NameSilo US(US) PhishDestroy Investigation
दुरुपयोग संपर्कabuse@hosting.com, abuse@namesilo.com
IP पता 209.124.66.7 NL
भौगोलिक स्थानNL Lelystad, NL
नेटवर्कAS19905 · AS55293 A2 Hosting, Inc.
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणExpires 06/09/2026
Elapsed Since First Report 78 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: अंतिम ज्ञात सक्रिय.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
HTTP स्थिति200
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
पहली बार पता चला04/02/2026
DOM Analysisanalyzed 23/04/2026DOM analysis score 88/100
Submitted URLhttp://groupman.net/
नेमसर्वरns4.a2hosting.com
MX Records0 mail.groupman.net
TLS फिंगरप्रिंट
TLS अवलोकन08/03/2026 से मान्य15/03/2026 को स्कैन किया गया
TLS सब्जेक्ट वैकल्पिक नामautodiscover.groupman.netcpanel.groupman.netcpcalendars.groupman.netcpcontacts.groupman.netmail.groupman.netwebdisk.groupman.netwebmail.groupman.netwww.groupman.net
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।

तकनीकें

5 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं

Nginx OpenResty LiteSpeed HSTS HTTP/3
Cloudflare Radar
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

2 / 93 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
Google Safebrowsing
SOCRadar

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें

बाहरी उपकरण

HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/groupman.net"
  title="PhishDestroy threat report for groupman.net"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।