Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@nicenic.net.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
legasusswap[.]com
“PegasusSwap - Crypto Exchange Platform”
legasusswap.com — ढका हुआ · पहुंच योग्य. घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 4/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Gridinsoft); cloaking observed; PhishDestroy score 65/100. रजिस्ट्रार: NiceNIC.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of legasusswap.com indicates an active crypto scam domain registered on February 21, 2026, through NiceNIC International Group Co., Limited. The domain resolves to IP 188.114.96.3, hosted on Cloudflare's network (AS13335) in the US, and is protected by Cloudflare's infrastructure, including HTTP/3 and Browser Insights. The page title, 'PegasusSwap - Crypto Exchange Platform,' suggests an attempt to impersonate a cryptocurrency exchange, though the exact content and functionality of the site remain unconfirmed as no direct analysis of the page has been conducted. The domain is flagged by at least one security blocklist and has a Gridinsoft trust score of 0/100, indicating high-risk activity.
Two of 93 security vendors on VirusTotal have detected this domain as malicious. The SSL certificate is issued by Google Trust Services (WE1), a common certificate authority for both legitimate and malicious domains. Nameservers are also Cloudflare-hosted ('evangeline.ns.cloudflare.com' and 'fattouche.ns.cloudflare.com'), which is consistent with many phishing campaigns leveraging Cloudflare's services for anonymity and resilience. Defenders should treat this domain as high-risk infrastructure.
Given its recent registration, low trust scores, and detection by security vendors, it is likely part of an ongoing phishing or scam operation targeting cryptocurrency users. Immediate actions include blocking the domain at the DNS or proxy level, monitoring for connections to the associated IP (188.114.96.3), and reviewing logs for any interactions with this domain or its nameservers. If internal users have accessed this domain, investigate for potential credential theft or wallet compromise. Further analysis of the site's content and backend infrastructure is recommended to determine the exact tactics employed.
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-13 02:44:42 UTC
तकनीकें · 5 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of legasusswap.com · checked Mar 2, 2026
साक्ष्य और बाहरी रिपोर्टें
PD-20260214-EA82A3 Recipient: abuse@nicenic.net क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।