nftpool[.]top
“522: Connection timed out”
साक्ष्य सारांश
The domain nftpool.top was registered on October 14, 2025 through NiceNIC International Group Co., Limited. No SSL certificate is associated with the host, and the authoritative nameservers are keyla.ns.cloudflare.com and sean.ns.cloudflare.com, indicating that the domain is fronted by Cloudflare's DNS service. The domain resolves to IP address 104.21.91.221, which belongs to AS13335 Cloudflare, Inc. and is geolocated to the United States. When accessed, the HTTP response returns a Cloudflare 522 status code with the page title '522: Connection timed out', suggesting that the origin server is not responding. The site has been classified as a crypto drainer investment scam and is linked to an Airdrop Scam phishing kit.
Security telemetry shows a Gridinsoft trust score of 0 out of 100, and the domain appears on a single security blocklist. It is currently blocked by PhishDestroy. VirusTotal analysis recorded one positive detection out of ninety‑five scanners. Because the site is offline, no content has been captured, and the exact mechanisms used to drain cryptocurrency wallets remain unknown.
The lack of an SSL certificate prevents verification of any TLS fingerprint, and the solitary blocklist entry provides limited insight into the broader distribution of the malicious payload. Defenders should add nftpool.top to network‑level deny lists, enforce DNS filtering that includes the observed blocklist, and monitor for any traffic to the associated Cloudflare IP range. Threat‑intel feeds should be updated to reflect the registration date and the association with the Airdrop Scam kit. Continued scanning of the IP address for abnormal outbound connections is advised, and any future resolution to a live server should be re‑examined for malicious scripts or wallet‑draining code.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026
पहचान समयरेखा
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।