MALICIOUS — CRITICAL
msetup[.]blockchainminingpools[.]com
The domain msetup.blockchainminingpools.com was registered on March 01, 2026 through Global Domain Group LLC and is currently listed as offline.
- VirusTotal
- 17/93
- Blocklists
- No stored match
- उपलब्धता
- सामग्री अनुपलब्ध · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
msetup.blockchainminingpools.com — सामग्री अनुपलब्ध (HTTP 502). ब्रांड प्रतिरूपण: Blockchain; घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 17/93 (ADMINUSLabs, BitDefender, CRDF, Cluster25, CyRadar); URLQuery 3 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. रजिस्ट्रार: Global Domain Group.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Evidence Analysis
msetup.blockchainminingpools.com — Phishing Alert
The domain msetup.blockchainminingpools.com was registered on March 01, 2026 through Global Domain Group LLC and is currently listed as offline.
The domain msetup.blockchainminingpools.com was registered on March 01, 2026 through Global Domain Group LLC and is currently listed as offline. DNS resolution points to IP address 216.198.79.65, which belongs to Amazon.com, Inc. (AS16509) and is geolocated in the United States. The site served an SSL certificate from Let’s Encrypt (R13), indicating the use of a freely issued TLS certificate. The page title reported by crawlers is "Blockchain MiningPool," and automated fingerprinting identified a stack comprising Node.js, React, Next.js, Vercel, Webpack, and HTTP Strict Transport Security (HSTS).
The intelligence classification tags the activity as a crypto‑related phishing campaign. Reputation services reflect extreme distrust: Gridinsoft assigns a score of 0/100, Scamadviser reports 1/100, and the domain appears on a single security blocklist, specifically PhishDestroy. VirusTotal analysis shows that 17 of 93 scanning engines flagged the domain as malicious. Nameservers are listed as dan1.host-ww.net and dan2.host-ww.net.
While the offline status prevents direct examination of the payload, the convergence of low trust scores, multiple vendor detections, and association with a known phishing blocklist strongly indicates malicious intent. Defenders should continue to block the domain at network perimeters, monitor DNS queries for the associated IP and nameservers, and consider adding the IP to threat‑intel feeds. Ongoing observation is advised to detect any reactivation or related infrastructure that may emerge.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
डेटा कवरेज13 recorded checks
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | msetup.blockchainminingpools.com |
malicious | Sinkholed |
| OpenDNS | msetup.blockchainminingpools.com |
phishing | Phishing Block |
| DNS4EU | msetup.blockchainminingpools.com |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
Registration: blockchainminingpools.com
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For the registrable domain blockchainminingpools.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
फॉरेंसिक इंटेलिजेंस
तकनीकें · 6 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
JavaScript library for building user interfaces with component-based architecture.
Cloud platform for frontend deployment, optimized for Next.js.
React framework for production with hybrid static and server rendering.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Module bundler for modern JavaScript applications.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of msetup.blockchainminingpools.com · checked Mar 2, 2026
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
PD-20260301-37626D Recipient: abuse@globaldomaingroup.com Victim safety and official reportingImmediate actions and verified reporting channels
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।