सुरक्षा रिपोर्ट पर जाएँ
Checked 09/08/2026 Ref A45E51C8

MALICIOUS — CRITICAL

rugsol.live की फ़िशिंग और सुरक्षा जाँच

rugsol[.]live

This domain is flagged as a high-risk brand impersonation threat targeting Solana ecosystem users.

95/100 evidence score · Critical
VirusTotal
15/91
Blocklists
2 · MetaMask, SEAL
उपलब्धता
सामग्री अनुपलब्ध · HTTP 502
Report / Add Evidence Appeal this listing
2026-04-29 16:29 UTCसामग्री अनुपलब्ध · HTTP 502

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 15। किसी मैच की रिपोर्ट करने वाली सार्वजनिक ब्लॉक सूचियाँ: 2। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
Jump to section
रिपोर्ट सारांश

rugsol.live — सामग्री अनुपलब्ध (HTTP 502). ब्रांड प्रतिरूपण: Solana; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 6 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. रजिस्ट्रार: Global Domain Group.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

Evidence Analysis

Ref A45E51C8

This domain is flagged as a high-risk brand impersonation threat targeting Solana ecosystem users. The site, titled 'RugSol - Solana Token Scanner,' mimics legitimate Solana token scanning tools to deceive victims into disclosing wallet credentials or authorizing malicious transactions. Analysis indicates the domain was specifically designed to exploit trust in Solana’s brand, leveraging technical infrastructure associated with fraudulent cryptocurrency schemes. Infrastructure analysis reveals the domain was registered on February 26, 2026, through Global Domain Group LLC and resolves to IP address 193.233.75.119. Security vendors on VirusTotal flagged the domain as malicious, with 13 out of 95 detections. The domain appears on three security blocklists and is blocked by multiple cryptocurrency wallet extensions and anti-phishing tools. Technologies detected include Node.js, Ubuntu, React, Nginx, Next.js, and Webpack, suggesting a modern, server-side rendered frontend commonly used in phishing campaigns. The Gridinsoft trust score for this domain is 0/100, further confirming its malicious nature. Mitigation steps for this threat type include immediate blocking of the domain and associated IP address across all network security controls. Users should verify the legitimacy of any Solana-related tool by cross-referencing official Solana communication channels before interacting with third-party services. Cryptocurrency wallet users are advised to revoke any suspicious token approvals or connected applications linked to rugsol.live. Organizations should monitor for credential submissions or wallet interactions originating from this domain and conduct retrospective analysis to identify potential compromise. Security teams should update endpoint protection rules to detect and prevent access to known malicious infrastructure associated with this campaign.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
15 det.
URLQuery
यूआरएलक्वेरी
6 threat alerts
URLScan
यूआरएलस्कैन
ScamAdviser
Scamadviser
66/100
TLS प्रमाणपत्र
समाप्त या असत्यापित
आयु
3 mo
देखी गई स्थिति
सामग्री अनुपलब्ध 502
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज13 recorded checks
VirusTotal 15 / 91 यूआरएलक्वेरी 6 threat-system alerts फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है 3 mo old स्क्रीनशॉट 2 captures · 2 sources चेन पुनर्निर्देशित करें जांच नहीं की गई Scamadviser 66/100
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 6 alerts
Detection System Indicator Verdict Alert
Private YARA rules auth-gateway-5934.vercel.app/solana?id=69b495d7ab4c1de49c2ebf98&bundle=1 audit Hunting_JS_WebAssembly
DigiCert UltraDNS ipfs.io malicious Sinkholed
Cloudflare DNS node2.irys.xyz malicious Sinkholed
Hagezi Threat Feed node2.irys.xyz malicious Sinkholed
DNS4EU node2.irys.xyz malicious Sinkholed
DigiCert UltraDNS cloudflare-dns.com malicious Sinkholed
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer:

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
16/16
धमकी निगल ली गई
rugsol.live पहचाना गया और पूर्ण विश्लेषण के लिए कतारबद्ध किया गया
29/04/2026
URLScan.io Capture
Stored URLScan report with capture artifacts
URLScan Verdict
यूआरएलस्कैन विश्लेषण पूरा हुआ; यह वेब-कैप्चर परिणाम पृष्ठ खतरे के फैसले को नहीं बदलता है · score 0
29/07/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
15/91 recorded on VirusTotal
02/08/2026
गूगल सुरक्षित ब्राउज़िंग
26/06/2026
ब्लॉकलिस्ट का पता लगाना
में पाया गया 2 blocklists: MetaMask, SEAL
09/08/2026
Brand Impersonation
Impersonation of Solana
Forensic Evidence Collected
Stored evidence from URLScan.io, URLQuery, stored screenshot
Technical Analysis Recorded
रिपोर्ट में संग्रहीत प्रौद्योगिकी या फोरेंसिक-विश्लेषण परिणाम शामिल हैं।
09/08/2026
VT detections increased by 4
+4 new detections (9 → 13): ADMINUSLabs, BitDefender, CRDF, Chong Lua Dao +9
26/06/2026
Cloudflare Radar Scan
क्लाउडफ्लेयर रडार से स्कैन किया गया; नेटवर्क विश्लेषण पूरा हुआ.
01/05/2026
Sent Report Recorded
Stored sent-report record for registrar Global Domain Group LLC, hosting provider, 2 abuse contacts
abuse@dhost.suabuse@globaldomaingroup.com
29/04/2026
डिस्ट्रॉयलिस्ट प्रकाशित
29/04/2026
Content Observed Unavailable
नवीनतम संग्रहीत जांच से संकेत मिलता है कि रिपोर्ट की गई सामग्री अनुपलब्ध है; इससे यह स्थापित नहीं होता कि परिवर्तन का कारण कौन या क्या है।
06/06/2026
पहली अनुपलब्धता तक का समय
पता लगाने से लेकर पहले अनुपलब्ध अवलोकन तक 33 घंटे बीत गए।

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

पेज शीर्षक
RugSol - Solana Token Scanner
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता Let's Encrypt / E8

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN nginx/1.24.0 (Ubuntu) · AS209207 Digital Hosting Provider LLC
IP प्रतिष्ठा abuse score 0/100 0 reports checked 13/07/2026
रजिस्ट्रार Global Domain Group US(US)
दुरुपयोग संपर्कabuse@dhost.su, abuse@globaldomaingroup.com
IP पता 193.233.75.119 DE
भौगोलिक स्थानDE Frankfurt am Main, DE
नेटवर्कAS209207 · Digital Hosting Provider LLC
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 29/04/2026 (101d) Expires 26/02/2027
HTTP स्थिति502 Error
पहली अनुपलब्धता तक का समय 33h
हम क्या मापते हैं पहली संग्रहीत दुरुपयोग रिपोर्ट से लेकर पहली बार अवलोकन तक कि सामग्री अनुपलब्ध थी, बीता हुआ समय। इससे कारण स्थापित नहीं होता.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला29/04/2026
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://rugsol.live/
नेमसर्वरmagnolia.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 28/04/2026scanned 29/04/2026
TLS SAN Domainswww.rugsol.live
Case ID
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।
तकनीकें · 6 identified
Node.js
Programming languages

Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.

nodejs.org 100% विश्वास
Ubuntu
Operating systems

Ubuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.

www.ubuntu.com 100% विश्वास
React
JavaScript frameworks

React is an open-source JavaScript library for building user interfaces or UI components.

reactjs.org 100% विश्वास
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org 100% विश्वास
Next.js
JavaScript frameworks Web frameworks

Next.js is a React framework for developing single page Javascript applications.

nextjs.org 100% विश्वास
Webpack
Miscellaneous

Webpack is an open-source JavaScript module bundler.

webpack.js.org 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

15 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed First positive detection Previous stored snapshot: 0 detections
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
साइरेडार
ईएसईटी
Fortinet
G-Data
Gridinsoft
कास्परस्की
Lionic
SOCRadar
सोफोस
VIPRE
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें
इस रिपोर्ट को एम्बेड करेंRead-only HTML widget
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/rugsol.live"
  title="PhishDestroy threat report for rugsol.live"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।