सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 12। किसी मैच की रिपोर्ट करने वाली सार्वजनिक ब्लॉक सूचियाँ: 3। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
REGISTRAR NEGLIGENCE · EGREGIOUS Fewmoretaps OU d/b/a Trustname.com was notified 2 months ago — the threat is still operational.
Why this matters — ICANN RAA §3.18 obligation

On PhishDestroy delivered an evidence-backed abuse report to abuse@trustname.com with the evidence stored for the case at that time. More than 2 months later, the phishing infrastructure remains reachable .

Under ICANN RAA §3.18 accredited registrars are contractually obliged to “take reasonable and prompt steps to investigate and respond appropriately to any reports of abuse.” Silence beyond 24 hours after a documented notification with verifiable evidence is not a timing issue — it is a policy decision to let the operation continue. PhishDestroy\'s position: where a registrar fails to act on clear evidence, the registrar has aligned itself with the operator of the scheme and bears co-responsibility for downstream harm caused to victims from the moment of notification onward.

Elapsed since first report
2 months
Reports sent
1
Latest case ID
PD-1779592982-koazox.com
Current status
Serving traffic (alive)
डोमेन सुरक्षा और ख़तरे की आसूचना

koazox[.]com

koazox.com की फ़िशिंग और सुरक्षा जाँच

धमकी भरा फैसला गंभीर 100/100 साक्ष्य स्कोर
उपलब्धता ढका हुआ · पहुंच योग्य क्लोकिंग जांच के माध्यम से पहुंच योग्यता देखी गई
जोखिम संकेत
वायरस का कुल पता लगाना: 12/92 Spamhaus DBL: DBL_PHISH संग्रहीत ब्लॉकलिस्ट मिलान: 3 ब्रांड प्रतिरूपण: Cryptoscam अंतिम ज्ञात सक्रिय
12/92 VT OTX: 1 ref 24/05/2026 06/06/2026 के बाद से अनुपलब्ध है 3 Blocklists Cryptoscam जुआरी घोटाला Crypto Drainer 1 Report Sent Cloaking CDN
रिपोर्ट सारांश

koazox.com — ढका हुआ · पहुंच योग्य (HTTP 200). ब्रांड प्रतिरूपण: Cryptoscam; घोटाले का प्रकार: Crypto Drainer. साक्ष्य सारांश: VT 12/92 (alphaMountain.ai, Gridinsoft, LevelBlue, Lumu, Netcraft); URLQuery 0; URLScan malicious; GSB no flag; Spamhaus DBL_PHISH; BL 3 (MetaMask, ScamSniffer, SEAL); cloaking observed; PD 100/100. रजिस्ट्रार: Fewmoretaps OU d/b/a T….

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
84685212
स्कोर
100/100

koazox.com entered the PhishDestroy evidence set on May 24, 2026. Stored content metadata identifies Cryptoscam as the apparent target. The stored content classification is crypto drainer. The assembled evidence scores 100/100 (critical).

Six independent sources are positive: VirusTotal, MetaMask, ScamSniffer, SEAL, Spamhaus DBL, and URLScan. VirusTotal recorded 12 detections among 92 engines: alphaMountain.ai, Gridinsoft, LevelBlue, Lumu, Netcraft, PhishFort on Jul 18, 2026 at 18:45 UTC. MetaMask, ScamSniffer, and SEAL listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 18:20 UTC. Spamhaus DBL: DBL_PHISH on Jul 13, 2026 at 14:36 UTC. URLScan returned a malicious verdict with score 100. The evidence is not unanimous. AlienVault OTX listed 1 community pulse reference (not vendor detections) on May 18, 2026 at 23:11 UTC. URLQuery recorded no positive detection. Google Safe Browsing returned no flag on May 19, 2026 at 05:00 UTC.

Cloaking was recorded with HTTP 200 on Aug 7, 2026 at 10:17 UTC. Registration records for the domain list Fewmoretaps OU d/b/a Trustname.com as the registrar and May 18, 2026 as the creation date. Registration preceded first observation by 5 days. At collection time, the hostname resolved to 69.67.173.34 on AS399629 (BL Networks). The recorded endpoint location is Bucharest, RO. The stored server header is cloudflare. The evidence archive retains 1 visual capture from PhishDestroy. IoC extraction completed on Jul 29, 2026 at 02:02 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists Let's Encrypt as the certificate issuer with validity through Aug 15, 2026; checked May 18, 2026 at 23:00 UTC.

No page title was retained; the visual captures, not a title string, preserve the landing-page appearance. Taken together, the page content and independent findings support classifying this hostname as Cryptoscam-themed crypto drainer.

VirusTotal
VirusTotal
12 det.
OTX references
URLScan
यूआरएलस्कैन
Gridinsoft
1/100
TLS प्रमाणपत्र
Let's Encrypt
आयु
3 mo New
देखी गई स्थिति
ढका हुआ · पहुंच योग्य 200
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज VirusTotal 12 / 92 यूआरएलक्वेरी रिपोर्ट संग्रहीत - विस्तृत निर्णय लंबित फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स 1 community reference सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict malicious डीएनएस ब्लॉक जाँच नहीं की गई TLS valid certificate, 50d कौन है 3 mo old स्क्रीनशॉट बाहरी कैप्चर चेन पुनर्निर्देशित करें जांच नहीं की गई Gridinsoft 1/100
सुरक्षा संकेत
GS Gridinsoft Analysis 1 / 100
4 0 2 1 2
नेटवर्क सुरक्षा इंटेलिजेंस Registrar Integrity Alert
High-Risk Registrar Trustname
Trustname (IANA #4318 / Fewmoretaps OÜ) is an Estonian shell company declaring €120 annual revenue with 1 employee, negative equity, and a deletion notice published in the Estonian Business Registry. Both owners are Belarusian. The registrar literally calls itself “bulletproof” in its own DNS TXT record and is actively registering scam crypto casinos behind its own offshore privacy proxies.
Trustname Investigation

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
16/17
Initial Abuse Report (#1)
Sent to 3 abuse contacts at Fewmoretaps OU d/b/a Trustname.com with forensic evidence
abuse@trustname.comabuse@verisign-grs.comcompliance@icann.org
24/05/2026

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Let's Encrypt · valid for 50 days

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict दुर्भावनापूर्ण score 100 Phishing report ↗
सर्वर / ASN cloudflare · AS399629 BL Networks
IP Context Cloudflare shared edge origin IP hidden एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।
रजिस्ट्रार Fewmoretaps OU d/b/a T… BY(BY) PhishDestroy Investigation
IP पता 69.67.173.34 CDN
भौगोलिक स्थानRO Bucharest, RO
नेटवर्कAS399629 · BL Networks
रिवर्स IPviewdns.info → rapiddns.io →
मूल आईपी सीडीएन प्रॉक्सी के पीछे छिपा हुआ है। किनारे के पते के लिए रिवर्स-आईपी परिणामों में असंबंधित किरायेदार शामिल हैं; मूल का पता लगाने के लिए निष्क्रिय DNS या प्रमाणपत्र-पारदर्शिता डेटा की आवश्यकता होती है।
पंजीकरणनिर्मित 18/05/2026 (81d · New)
Cloaking Cloaking Detected Content divergence · score 2/6
alive_content: raw=ok; http=200; via=https_proxy
title: …
checked 07/08/2026
HTTP स्थिति200
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला24/05/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
नेमसर्वरleia.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 17/05/2026scanned 19/05/2026
Case ID
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

ICANN को भुगतान मिल गया। जवाबदेही नहीं पहुँची।

इस gTLD के लिए, ऊपर दिया गया रजिस्ट्रार ICANN के साथ अनुबंध के तहत काम करता है। ICANN पंजीकरण, नवीनीकरण और हस्तांतरण से जुड़े वार्षिक, परिवर्तनीय और लेनदेन-आधारित शुल्क वसूलता है।

मान्यता: कमाई का ज़रिया। जवाबदेही: कृपया बाद में फिर देखें।

फिर जादू शुरू होता है: ICANN RAA §3.18 लिखता है, रजिस्ट्रार अपने ही ग्राहक आधार के भीतर दुरुपयोग की जाँच करता है, और पीड़ित मुफ़्त में सबूत देते हैं, जबकि हर स्तर किसी और के कदम उठाने का इंतज़ार करता है। अगर इससे पीड़ित अधिक सुरक्षित महसूस करते हैं, तो शानदार—चालान ने अपना काम कर दिया।

जवाबदेही पर व्यंग्यात्मक नोट कुछ भी अपने आप नहीं भेजा जाता।
तकनीकें · 3 identified
Cloudflare Browser Insights
Analytics RUM

Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.

www.cloudflare.com 100% विश्वास
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com 100% विश्वास
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

12 / 92 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
alphaMountain.ai
Gridinsoft
LevelBlue
Lumu
नेटक्राफ्ट
PhishFort

साक्ष्य और बाहरी रिपोर्टें

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/koazox.com"
  title="PhishDestroy threat report for koazox.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।