threshold.sbs — अंतिम ज्ञात सक्रिय (HTTP 200). घोटाले का प्रकार: Crypto Drainer. साक्ष्य सारांश: VirusTotal 4/91 (alphaMountain.ai, Gridinsoft, SOCRadar, Webroot); URLQuery 8 alerts; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 81/100. रजिस्ट्रार: Dynadot.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Evidence Facts
PhishDestroy first observed threshold.sbs on Apr 29, 2026. The captured page title is “threshold.sbs”. Stored page analysis classifies the content as crypto drainer. Evidence score: 81/100 (critical).
5 independent sources recorded positive findings: VirusTotal, MetaMask, SEAL, Spamhaus DBL, and URLQuery. VirusTotal recorded 4 detections among 91 engines: alphaMountain.ai, Gridinsoft, SOCRadar, Webroot on Jul 18, 2026 at 16:45 UTC. MetaMask and SEAL listed the hostname in the separate external-blocklist snapshot on Aug 9, 2026 at 06:20 UTC. Spamhaus DBL: DBL_PHISH on Jul 13, 2026 at 18:31 UTC. URLQuery recorded 8 threat-system alerts on Apr 29, 2026 at 09:14 UTC.
HTTP 200 was recorded on Aug 9, 2026 at 02:13 UTC. Registration records for the domain list Dynadot LLC as the registrar and Apr 29, 2026 as the creation date. At collection time, the hostname resolved to 185.53.179.128 on AS61969 (Team Internet AG). The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery.
डेटा कवरेज13 recorded checks
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | obseu.northwavepoint.com |
malicious | Sinkholed |
| DigiCert UltraDNS | l.cdn-fileserver.com |
malicious | Sinkholed |
| Quad9 DNS | l.cdn-fileserver.com |
malicious | Sinkholed |
| Cloudflare DNS | realtimesearchresults.com |
malicious | Sinkholed |
| DNS4EU | realtimesearchresults.com |
malicious | Sinkholed |
| DigiCert UltraDNS | s.cdn-fileserver.com |
malicious | Sinkholed |
| Quad9 DNS | s.cdn-fileserver.com |
malicious | Sinkholed |
| DigiCert UltraDNS | euob.northwavepoint.com |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
SHORTDOT ज़ोन · सार्वजनिक साक्ष्य
.sbs
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टेंIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।