सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 5। किसी मैच की रिपोर्ट करने वाली सार्वजनिक ब्लॉक सूचियाँ: 1। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

hylo[.]lol

“Hylo — Leverage”

धमकी भरा फैसला गंभीर 80/100 साक्ष्य स्कोर
उपलब्धता अंतिम ज्ञात सक्रिय नवीनतम संग्रहीत रीचैबिलिटी अवलोकन
वायरस का कुल पता लगाना: 5/91 संग्रहीत ब्लॉकलिस्ट मिलान: 1 घोटाले का प्रकार: Crypto Drainer युवा डोमेन: 19 दिन पुराना अंतिम ज्ञात सक्रिय
31/07/2026 CDN
रिपोर्ट सारांश

hylo.lol — अंतिम ज्ञात सक्रिय (HTTP 200). घोटाले का प्रकार: Crypto Drainer. साक्ष्य सारांश: VirusTotal 5/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar, URLQuery); 1 external blocklist match (ScamSniffer); PhishDestroy score 80/100. रजिस्ट्रार: NiceNIC.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
E117013D
स्कोर
80/100

Analysis of hylo.lol shows a newly registered domain (creation date July 28 2026) that is currently active and has been flagged by multiple defensive sources. The domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED and uses Cloudflare nameservers (phoenix.ns.cloudflare.com, renan.ns.cloudflare.com). DNS resolution points to the IP address 172.67.188.221, a Cloudflare‑hosted address that is commonly shared among unrelated legitimate services, limiting the value of IP‑based reputation alone.

The domain appears on a single public blocklist and has been explicitly blocked by the PhishDestroy service, indicating that at least one anti‑phishing feed considers it malicious. VirusTotal records show that the domain was scanned by 91 commercial engines, none of which returned a detection; this absence of detections should not be interpreted as evidence of safety, as many phishing‑oriented payloads evade automated signatures. No public Safe Browsing, OTX, SSL certificate details, HTTP status codes, trust‑score metrics, or page‑title information are available in the current intelligence set, and no evidence links have been published.

Given the registration timing, active status, and confirmation by an established phishing‑blocking feed, defenders should treat hylo.lol as a high‑confidence phishing indicator. Recommended actions include adding the domain to local blocklists, monitoring DNS queries for outbound resolutions to 172.67.188.221, and ensuring that email security gateways enforce URL reputation checks that incorporate the PhishDestroy feed. Continuous re‑evaluation is advised, as further telemetry (e.g., payload samples or page content) may emerge and refine the threat profile.

VirusTotal
VirusTotal
5 det.
URLScan
यूआरएलस्कैन
ScamAdviser
Scamadviser
15/100
TLS प्रमाणपत्र
Google Trust Services
आयु
19d Very New!
देखी गई स्थिति
अंतिम ज्ञात सक्रिय 200
PhishDestroy
विनाश सूची
सूचीबद्ध
डेटा कवरेज VirusTotal 5 / 91 यूआरएलक्वेरी जाँच नहीं की गई फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS valid certificate, 86d कौन है 19d old स्क्रीनशॉट 3 captures · 2 sources चेन पुनर्निर्देशित करें जांच नहीं की गई Scamadviser 15/100
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
13/15

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

पेज शीर्षक
Hylo — Leverage
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Google Trust Services · valid for 86 days

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।
रजिस्ट्रार NiceNIC RU(RU) PhishDestroy Investigation
दुरुपयोग संपर्कabuse@nicenic.net
IP पता 172.67.188.221 CDN
भौगोलिक स्थानCA Toronto, CA
नेटवर्कAS13335 · Cloudflare, Inc.
रिवर्स IPviewdns.info → rapiddns.io →
मूल आईपी सीडीएन प्रॉक्सी के पीछे छिपा हुआ है। किनारे के पते के लिए रिवर्स-आईपी परिणामों में असंबंधित किरायेदार शामिल हैं; मूल का पता लगाने के लिए निष्क्रिय DNS या प्रमाणपत्र-पारदर्शिता डेटा की आवश्यकता होती है।
पंजीकरणनिर्मित 28/07/2026 (19d · Very New!) Expires 28/07/2027
HTTP स्थिति200
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला31/07/2026
DOM Analysisanalyzed 31/07/2026score 0/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://hylo.lol/
नेमसर्वरphoenix.ns.cloudflare.comrenan.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 28/07/2026scanned 31/07/2026
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।

Latest Classified Outcome 2026-08-16 02:41:49 UTC

Primary outcome Live content reason: Ordinary HTTP content served 90% confidence
Attribution source: Current Http Probe
Evidence layers Availability: Content serving Content: Content served at root DNS: Resolved Registration: Active
Latest HTTP observation Live content Ordinary HTTP content served 90% 2026-08-16 02:41:49 UTC
RDAP registration सक्रिय NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 RDAP HTTP 200 source: Rdap Status Collector clientDeleteProhibitedclientTransferProhibitedServertransferprohibited expires 2027-07-28 23:59:59 UTC checked 2026-08-05 19:22:38 UTC
Observed timeline last reachable: 2026-08-16 02:41:49 UTC last content: 2026-08-16 02:41:49 UTC
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.
थ्रेट इंटेलिजेंस क्रॉस-रेफ़रेंस · source references
स्कैमएडवाइज़र Public lookup
A public स्कैमएडवाइज़र lookup is available. Review its current score and warnings at the source; the existence of a lookup page is not itself a malicious verdict.
View on ScamAdviser
Live-fetched via CF worker proxy pool · cached 24h
तकनीकें · 7 identified
Node.js
Programming languages

Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.

nodejs.org 100% विश्वास
Express
Web frameworks Web servers

Express is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs.

expressjs.com 100% विश्वास
Unpkg
CDN

Unpkg is a content delivery network for everything on npm.

unpkg.com 100% विश्वास
HSTS
सुरक्षा

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org 100% विश्वास
Cloudflare Browser Insights
Analytics RUM

Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.

www.cloudflare.com 100% विश्वास
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com 100% विश्वास
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

5 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed First positive detection Previous stored snapshot: 5 detections
alphaMountain.ai
Forcepoint ThreatSeeker
Gridinsoft
SOCRadar
यूआरएलक्वेरी

संग्रहीत साक्ष्य

Wayback Machine Snapshot
साक्ष्य समीक्षा के लिए एक ऐतिहासिक स्नैपशॉट उपलब्ध है
View Archive
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of hylo.lol · checked Jul 31, 2026

85
Needs Work
Performance
FCP
2.75s
First Contentful Paint
LCP
3.35s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
4.41s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Stored Capture Evidence 1 snapshot

Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.

Archived HTTP response HTTP 200
Requested URL: https://hylo.lol/
Hylo — Leverage
प्रतिक्रिया
HTTP 200
HTML body
41.5 KB
Compressed
11.4 KB
Links
1 internal · 1 external
Detected technologies
cloudflarereact
Selected response headers
Content-Type: text/html; charset=UTF-8
Server: cloudflare
X-Powered-By: Express
Cache-Control: public, max-age=2592000
CF-Cache-Status: HIT
Content-Encoding: gzip
Security headers present
Strict-Transport-SecurityX-Frame-OptionsX-Content-Type-OptionsX-XSS-Protection
HSTS: observed DNSSEC: not observed WAF / firewall: observed Cloaking flag: not observed
All stored response-header names (22)
DateContent-TypeTransfer-EncodingConnectionServercast-modex-powered-byAccess-Control-Allow-OriginCache-ControlLast-ModifiedNelstrict-transport-securityx-frame-optionsx-content-type-optionsx-xss-protectionReport-Toआयुcf-cache-statusVaryContent-EncodingCF-RAYalt-svc
साइट कॉन्फ़िगरेशन विश्लेषण
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
Valid robots.txt; no Disallow/Allow paths were extracted.

साक्ष्य और बाहरी रिपोर्टें

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/hylo.lol"
  title="PhishDestroy threat report for hylo.lol"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।