सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 16। किसी मैच की रिपोर्ट करने वाली सार्वजनिक ब्लॉक सूचियाँ: 1। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

phantomwallet[.]to

“phantomwallet.to”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता सर्वर त्रुटि नवीनतम संग्रहीत प्रतिक्रिया अनिर्णायक थी
वायरस का कुल पता लगाना: 16/91 Spamhaus DBL: DBL_PHISH संग्रहीत ब्लॉकलिस्ट मिलान: 1 ब्रांड प्रतिरूपण: Phantom
16/09/2025 Phantom

साक्ष्य सारांश

आलोचनात्मक
Evidence score
95/100

On 23 July 2026 analysts observed that the domain phantomwallet.to is hosted on a server located in the Netherlands (AS202412, Omegatech LTD) and resolves to 178.16.54.12. The domain was registered on 5 May 2025 through the Government of the Kingdom of Tonga and is delegated to the nameservers ns1.ddos-guard.net and ns2.ddos-guard.net. No TLS certificate is presented, indicating that HTTPS is not available. The page title returned by the HTTP response is “phantomwallet.to”, matching the domain name and providing no additional context.

The domain appears on two independent phishing blocklists and has been explicitly blocked by the PhishDestroy and ScamSniffer filters. VirusTotal scans show that 17 of 95 security engines flag the domain as malicious, reinforcing the blocklist findings. The observed activity is classified as a crypto‑related scam that impersonates the Phantom wallet brand, suggesting that any credential or private‑key capture attempts would target Phantom users. At the time of analysis the host responded with an HTTP status indicating the site is taken offline, which limits immediate payload delivery but does not eliminate the risk of re‑activation.

Current intelligence lacks details on the content served before takedown, so the exact phishing flow and any embedded malicious payload remain uncertain. Defenders should add phantomwallet.to to internal block and allow lists, monitor DNS queries for the domain and its associated nameservers, and enforce TLS inspection policies that would block any future HTTP connections to this host. Network‑level controls should also restrict outbound traffic to the identified IP address and ASN. Continuous threat‑intel feeds should be consulted for any re‑registration attempts or new indicators tied to the same infrastructure.

VirusTotal
VirusTotal
16 det.
आयु
1.3 yr
देखी गई स्थिति
सर्वर त्रुटि HTTP 502
PhishDestroy
विनाश सूची
सूचीबद्ध

Data Coverage

VirusTotal 16 / 91 यूआरएलक्वेरी रिपोर्ट संग्रहीत - विस्तृत निर्णय लंबित फ़िशस्टैट्स checked — no match recorded ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS कोई प्रमाणपत्र डेटा नहीं कौन है 15 mo old स्क्रीनशॉट 2 captures · 2 sources चेन पुनर्निर्देशित करें जांच नहीं की गई

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
11/13

ब्लॉकलिस्ट कवरेज

10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 10/08/2026

9 निगरानी वाले बाहरी स्रोत कोई मिलान नहीं

पहचान समयरेखा

  1. Cloudflare Radar

    Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN nginx · AS209800 metaspinner-asn metaspinner net GmbH, DE
IP प्रतिष्ठा IP abuse confidence 0/100 1 report checked 01/08/2026
रजिस्ट्रार Government of Kingdom … (Tonga)
दुरुपयोग संपर्कinfo@tonicregistry.to
IP पता 178.16.54.12 NL
भौगोलिक स्थानNL Amsterdam, NL
नेटवर्कAS209800 · AS202412 Omegatech LTD
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 05/05/2025 Expires 05/05/2027
HTTP स्थिति502 Error
Elapsed Since First Report 159 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: सर्वर त्रुटि.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
पहली बार पता चला16/09/2025
DOM Analysisanalyzed 24/03/2026DOM analysis score 10/1001 brand signal
Submitted URLhttps://phantomwallet.to/
नेमसर्वरns1.ddos-guard.netns2.ddos-guard.net
TLS अवलोकन02/12/2025 से मान्य08/08/2026 को स्कैन किया गया
पेज शीर्षक
phantomwallet.to
Impersonates
Phantom
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

16 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 17 detections
ADMINUSLabs
चेनपैट्रोल
alphaMountain.ai
BitDefender
साइरेडार
ईएसईटी
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
कास्परस्की
Lionic
SOCRadar
सोफोस
VIPRE
वेबरूट

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें

बाहरी उपकरण

HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/phantomwallet.to"
  title="PhishDestroy threat report for phantomwallet.to"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>