note-access-nj2w[.]rob-c2d[.]workers[.]dev
note-access-nj2w.rob-c2d.workers.dev की फ़िशिंग और सुरक्षा जाँच
note-access-nj2w.rob-c2d.workers.dev — सामग्री अनुपलब्ध (HTTP 404). ब्रांड प्रतिरूपण: Generic. साक्ष्य सारांश: VirusTotal 16/94 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLScan malicious verdict; PhishStats feed match (179); PhishDestroy score 100/100. रजिस्ट्रार: Cloudflare.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
PhishDestroy identifies an elevated-risk crypto credential theft domain hosted at note-access-nj2w.rob-c2d.workers.dev. This Workers.dev subdomain delivers a generic phishing page designed to harvest cryptocurrency wallet credentials or seed phrases under the guise of legitimate access requests. No specific brand impersonation or drainer kit signature is recorded in current feeds, suggesting a broad, opportunistic campaign targeting crypto users. The threat actor leverages Cloudflare Workers for serverless execution, enabling rapid deployment and evasion of traditional hosting-based detection mechanisms.
This domain resolves to IP 188.114.97.3 and is registered via Cloudflare, Inc. Its SSL certificate is issued by Let's Encrypt, facilitating encrypted connections to evade inspection. VirusTotal analysis shows a detection ratio of 16 out of 95 security vendors as of seed 056c79. The domain is not currently flagged in Google Safe Browsing (GSB), but its low VT coverage and Workers.dev origin suggest recent activation and potential for rapid spread. It has likely evaded broad blocklists due to its ephemeral infrastructure and legitimate-looking certificate.
Current status: active and serving phishing content. Immediate action is required to block the domain at DNS and network levels. Users should not access this URL or interact with any content delivered from it. Cryptocurrency users are advised to verify all access links via official channels and to rotate credentials if any interaction has occurred. Remaining risk: elevated due to low detection coverage and potential for rapid propagation across crypto communities. Continuous monitoring and proactive blocking are essential to mitigate exposure until the domain is neutralized by hosting providers or law enforcement takedowns.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of note-access-nj2w.rob-c2d.workers.dev · checked Apr 16, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।