सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 14। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@cogentco.com. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
6 months
Reports sent
1
Latest case ID
PD-20260206-A7AA78
Current status
Observed active at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

telegram[.]hzxcopka[.]cn

“Telegram”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
वायरस का कुल पता लगाना: 14/91 URLQuery threat systems: 4 alerts ब्रांड प्रतिरूपण: Telegram
07/02/2026 टेलीग्राम 1 Report Sent
रिपोर्ट सारांश

telegram.hzxcopka.cn — असत्यापित. ब्रांड प्रतिरूपण: Telegram; घोटाले का प्रकार: Social Media Phishing. साक्ष्य सारांश: VirusTotal 14/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CyRadar, ESET); URLQuery 4 alerts; URLScan malicious verdict; PhishDestroy score 95/100. रजिस्ट्रार: Web Commerce Communica….

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
96F10583
स्कोर
95/100

The domain telegram.hzxcopka.cn has been flagged for engaging in brand impersonation, specifically targeting the Telegram brand. This domain does not utilize any SSL certificate, increasing the risk of data interception and manipulation, and it does not appear to use any drainer kits.

Infrastructure analysis reveals that this domain has a VirusTotal score of 21/95, indicating that 21 out of 95 security vendors have identified it as malicious. The domain is registered through Web Commerce Communications Limited and resolves to the IP address 38.175.198.28, which is located in Hong Kong under the AS979 NetLab Global network. The domain was created on February 21, 2026, and it appears on one security blocklist. It has been taken offline, suggesting that it may have been used for a targeted campaign before being discovered and mitigated.

Currently, the domain is offline, which has reduced the immediate risk to potential victims. However, it remains important to monitor for any signs of reactivation. Response actions have included its listing on security blocklists and offline status. Despite these measures, the domain's previous online activity and the fact that it appears on a blocklist indicate that there is still a residual risk, and users should exercise caution if they encounter any references to this domain.

VirusTotal
VirusTotal
14 det.
URLQuery
यूआरएलक्वेरी
4 threat alerts
URLScan
यूआरएलस्कैन
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज VirusTotal 14 / 91 यूआरएलक्वेरी 4 threat-system alerts फ़िशस्टैट्स checked — no match recorded ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict malicious डीएनएस ब्लॉक जाँच नहीं की गई TLS कोई प्रमाणपत्र डेटा नहीं कौन है not parsed स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 4 alerts
Detection System Indicator Verdict Alert
Private YARA rules telegram.hzxcopka.cn/rlottie-wasm.f013598f1b2ba719f25e.js audit Hunting_JS_WebAssembly
OpenDNS telegram.hzxcopka.cn phishing Phishing Block
DNS4EU telegram.hzxcopka.cn malicious Sinkholed
Cloudflare DNS telegram.hzxcopka.cn malicious Sinkholed

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
12/13
Sent Report Recorded
Stored sent-report record for registrar Web Commerce Communications Limited, hosting provider, 2 abuse contacts
maomao15888@qq.comabuse@cogentco.com
06/02/2026

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict दुर्भावनापूर्ण score 100 Phishing brand: Telegram report ↗
Telegram IoCs 1 extracted https://t.me/_websync_
सर्वर / ASN nginx · AS979 NETLAB-SDN - NetLab Global, US
IP प्रतिष्ठा abuse score 0/100 0 reports checked 28/07/2026
Registrar (base domain) Web Commerce Communica… MY(MY)
दुरुपयोग संपर्कmaomao15888@qq.com, abuse@cogentco.com
IP पता 38.175.198.28 HK
भौगोलिक स्थानHK Hong Kong, HK
नेटवर्कAS979 · NetLab Global
रिवर्स IPviewdns.info → rapiddns.io →
Elapsed Since First Report 96 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: असत्यापित.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला07/02/2026
DOM Analysisanalyzed 23/04/2026score 10/1001 brand signal
IoC Extractionscanned 29/07/20260 wallet · 1 Telegram IoC
Submitted URLhttps://telegram.hzxcopka.cn/
नेमसर्वरns1.julydns.comns2.julydns.com
TLS Observationvalid from 08/01/2026scanned 12/08/2026
Case ID
पेज शीर्षक
टेलीग्राम
Impersonates
टेलीग्राम
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

14 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 21 detections
ADMINUSLabs
BitDefender
Chong Lua Dao
साइरेडार
ईएसईटी
Forcepoint ThreatSeeker
Fortinet
G-Data
गूगल सुरक्षित ब्राउज़िंग
Gridinsoft
कास्परस्की
Lionic
सोफोस
वेबरूट

साक्ष्य और बाहरी रिपोर्टें

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260206-A7AA78 Recipient: abuse@cogentco.com
Page title stored with report: टेलीग्राम
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 7.9 KB

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/telegram.hzxcopka.cn"
  title="PhishDestroy threat report for telegram.hzxcopka.cn"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>