pixel-war[.]app
pixel-war.app की फ़िशिंग और सुरक्षा जाँच
“Pixel War”
pixel-war.app — सामग्री अनुपलब्ध (HTTP 502). साक्ष्य सारांश: VirusTotal 5/91 (alphaMountain.ai, CRDF, Fortinet, Gridinsoft, Webroot); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 85/100. रजिस्ट्रार: NiceNIC.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of pixel-war.app indicates the site is currently offline and lacks an SSL certificate, suggesting the operators have taken it down after initial deployment. The domain was registered on February 22, 2026 through NiceNIC International Group Co., Limited and is hosted on a Cloudflare‑managed server (AS56971) located in the Netherlands, resolving to IP address 31.15.17.200. Nameserver records point to fattouche.ns.cloudflare.com and sreeni.ns.cloudflare.com, confirming the use of Cloudflare’s DNS infrastructure. The web server was identified as Nginx and the page loaded jQuery libraries from a CDN, with the visible page title "Pixel War".
No additional page content has been publicly observed, leaving the exact phishing lure undefined beyond the generic classification. Security‑vendor telemetry shows that three of ninety‑five VirusTotal scanners flagged the domain, and three independent blocklists have already listed it. The domain is also blocked by PhishDestroy, MetaMask, and SEAL, reinforcing the consensus that it was used for malicious purposes. Gridinsoft assigned a trust score of 0 out of 100, reflecting a high confidence in its malicious nature.
Defenders should immediately add pixel-war.app to URL and DNS blocklists, enforce HTTPS‑only policies to prevent accidental connections, and monitor traffic to the associated IP 31.15.17.200 for any residual activity. Given the Cloudflare hosting, threat actors could quickly redeploy a similar payload under a new subdomain, so continuous observation of new registrations under the same registrar and similar naming patterns is recommended. Email security gateways should be updated to block messages referencing the "Pixel War" title or linking to the domain, and incident response teams should treat any residual artifacts as potentially compromised until further forensic analysis can confirm the scope of the campaign.
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-08 02:38:42 UTC
तकनीकें · 3 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of pixel-war.app · checked Mar 2, 2026
साक्ष्य और बाहरी रिपोर्टें
PD-20260222-EA209C Recipient: abuse@cloudbackbone.net क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।