MALICIOUS — CRITICAL
telegkel[.]com
This domain is an active phishing site designed to impersonate Telegram Messenger login pages.
- VirusTotal
- 17/91
- Blocklists
- No stored match
- उपलब्धता
- अंतिम ज्ञात सक्रिय · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
telegkel.com — अंतिम ज्ञात सक्रिय (HTTP 200). घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Google Safe Browsing flagged; Spamhaus DBL_SPAM; PhishDestroy score 100/100. रजिस्ट्रार: NiceNIC.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Evidence Analysis
This domain is an active phishing site designed to impersonate Telegram Messenger login pages. Visitors are presented with a fraudulent interface that closely resembles the legitimate Telegram web or mobile login portal, tricking users into entering their credentials. The site may also prompt for additional sensitive information such as two-factor authentication codes or recovery phrases, enabling attackers to gain full control of victim accounts. The primary threat is account takeover, which can lead to unauthorized access, data theft, or further phishing attacks targeting contacts within the compromised account. Analysis indicates the domain was registered on May 31, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-risk domains. It resolves to the IP address 27.124.47.186 and uses an SSL certificate labeled 'Telegram,' likely to enhance the illusion of legitimacy. While VirusTotal currently shows 0 detections out of 95 security engines, Google Safe Browsing has flagged the site for SOCIAL_ENGINEERING, and it appears on one security blocklist. The page title 'Messenger' further supports the intent to deceive users into believing they are accessing a genuine messaging service. If a user has visited telegkel.com and entered any credentials or personal information, immediate action is required. The user should log out of all active Telegram sessions from a trusted device and change their password using the official Telegram application or website. Enabling two-factor authentication (2FA) with an authenticator app, rather than SMS, is strongly recommended. All devices should be scanned for malware, and any suspicious browser extensions or applications should be removed. Users should also monitor their accounts for unauthorized activity and warn contacts about potential phishing messages sent from their account.
डेटा कवरेज12 recorded checks
नेटवर्क सुरक्षा इंटेलिजेंस Registrar context
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-09 02:45:12 UTC
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।