सुरक्षा रिपोर्ट पर जाएँ
Checked 09/08/2026 Ref E159556E

MALICIOUS — HIGH

niftex[.]net

Analysis of the domain niftex.net, created on 21 February 2026, indicates a brand‑impersonation campaign targeting Revolut.

56/100 evidence score · High
VirusTotal
2/93
Blocklists
No stored match
उपलब्धता
सामग्री अनुपलब्ध · HTTP 502
Report / Add Evidence Appeal this listing
2026-02-26 22:24 UTCसामग्री अनुपलब्ध · HTTP 502

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 2। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
Jump to section
रिपोर्ट सारांश

niftex.net — सामग्री अनुपलब्ध (HTTP 502). ब्रांड प्रतिरूपण: Revolut; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 2/93 (CRDF, Gridinsoft); PhishDestroy score 56/100.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

Evidence Analysis

Ref E159556E

niftex.net Fake Revolut Alert

Analysis of the domain niftex.net, created on 21 February 2026, indicates a brand‑impersonation campaign targeting Revolut.

Analysis of the domain niftex.net, created on 21 February 2026, indicates a brand‑impersonation campaign targeting Revolut. The site is currently offline, and its sole observed HTTP response points to a single IPv4 address, 35.220.242.188, which belongs to Google LLC (ASN 396982) and is geolocated in Hong Kong. The TLS certificate presented for the host carries an R10 rating, confirming that a valid SSL certificate was in place at the time of capture.

The page title returned by the server was "HNFT," which does not contain any reference to Revolut and suggests the presence of unrelated or obfuscated content. VirusTotal scans show that two of ninety‑three security vendors flagged the domain as malicious, providing limited but corroborating detection evidence. The domain appears on one public security blocklist and has been explicitly blocked by the PhishDestroy service, reinforcing the assessment that it was being used for fraudulent activities.

While the offline status prevents real‑time interaction, the infrastructure footprint—including the Google Cloud IP, the recent registration date, and the SSL certificate—remains valuable for threat‑intel correlation. Defenders should continue to monitor the IP address for any future redeployment, ensure that internal web filtering solutions block niftex.net, and propagate the indicator to shared blocklists. Additional observation of DNS changes or re‑activation attempts would help confirm whether the actor is reusing the same hosting environment for subsequent campaigns.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
2 det.
URLScan
यूआरएलस्कैन
Gridinsoft
59/100
ScamAdviser
Scamadviser
86/100
TLS प्रमाणपत्र
समाप्त या असत्यापित
आयु
6 mo
देखी गई स्थिति
सामग्री अनुपलब्ध 502
PhishDestroy
विनाश सूची
सूचीबद्ध
डेटा कवरेज14 recorded checks
VirusTotal 2 / 93 यूआरएलक्वेरी रिपोर्ट संग्रहीत - विस्तृत निर्णय लंबित फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार no data URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है 6 mo old स्क्रीनशॉट 2 captures · 2 sources चेन पुनर्निर्देशित करें जांच नहीं की गई Gridinsoft 59/100 Scamadviser 86/100

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
11/12

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN nginx · AS396982 GOOGLE-CLOUD-PLATFORM, US
IP प्रतिष्ठा abuse score 0/100 1 report checked 15/06/2026
IP पता 35.220.242.188 HK
भौगोलिक स्थानHK Hong Kong, HK
नेटवर्कAS396982 · Google LLC
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 21/02/2026 (169d)
HTTP स्थिति502 Error
पहली अनुपलब्धता तक का समय 54 days
हम क्या मापते हैं पहली संग्रहीत दुरुपयोग रिपोर्ट से लेकर पहली बार अवलोकन तक कि सामग्री अनुपलब्ध थी, बीता हुआ समय। इससे कारण स्थापित नहीं होता.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला26/02/2026
DOM Analysisanalyzed 24/03/2026score 56/1001 brand signal
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
पेज शीर्षक
HNFT
Impersonates
Revolut
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता R10

फॉरेंसिक इंटेलिजेंस

External Scripts 1
https://performance.radar.cloudflare.com/beacon.js
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

2 / 93 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
CRDF
Gridinsoft
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
Community Scam Report — ChainAbuse
1 report filed for niftex.net (1 written by a person) · category: Romance · source checked
“NFT Scam via Fake Platform Niftex.net – Wallet Drained **Scammer wallets**: - 0x3d2865df0cf0ecbefb733e3de2ada3bba9a18fa2 - 0x77c0C5E498A77dBDac7E0461b172ad8f971C5662 I was targeted in a sophisticated scam involving the fake platform niftex.net. I received an invitation link and connected my wallet to the site, believing it to be legitimate. They made me buy the NFT, saying it would later be synthesized and would generate a nice profit. After a 1 days, I received a follow-up message f”
— reported by Anonymous on Jul 19, 2025 · Source: ChainAbuse (TRM Labs) — full report and evidence there.
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें
इस रिपोर्ट को एम्बेड करेंRead-only HTML widget
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/niftex.net"
  title="PhishDestroy threat report for niftex.net"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>