penguinevent[.]lol
“PENGUIN | Airdrop”
penguinevent.lol — सामग्री अनुपलब्ध (HTTP 502). ब्रांड प्रतिरूपण: Revolut; घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 2/93 (Gridinsoft, SOCRadar); 1 external blocklist match (ScamSniffer); PhishDestroy score 80/100. रजिस्ट्रार: Eranet International.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain penguinevent.lol is a confirmed phishing site engaged in brand impersonation targeting Revolut users, specifically designed to deceive victims into participating in a fraudulent cryptocurrency airdrop scam. It poses an elevated risk due to its attempt to mimic a legitimate financial service, though no drainer kit was identified. As of the latest verification, penguinevent.lol has been taken offline, but prior activity indicates it was actively used for cryptocurrency-related fraud.
Technical analysis reveals that penguinevent.lol was flagged by 2 of 95 security vendors on VirusTotal, including Gridinsoft and SOCRadar, while Google Safe Browsing did not detect it. The domain was registered through Eranet International Limited on February 21, 2026, and resolved to the IP address 172.67.204.152, hosted on Cloudflare’s infrastructure in the US. It appeared on two security blocklists, PhishDestroy and ScamSniffer, and lacked an SSL certificate. The observed page title was 'PENGUIN | Airdrop,' and the domain used Cloudflare nameservers hayes.ns.cloudflare.com and raegan.ns.cloudflare.com.
Individuals who interacted with penguinevent.lol should immediately revoke any token approvals granted to unknown contracts and consider transferring funds to a new wallet to mitigate potential losses. If login credentials were entered, users should change their Revolut password, enable two-factor authentication, and monitor accounts for unauthorized transactions. Reporting the domain to platforms like Google Safe Browsing, PhishTank, or the impersonated brand’s security team can help prevent further abuse.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
PD-20260128-D68E39 Recipient: support@eranet.com, support@tnet.hk, info@todaynic.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।