Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@godaddy.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
usdt2rmb[.]net
“优速汇U2R - USDT虚拟卡与速汇服务 | 安全便捷的数字货币支付解决方案”
usdt2rmb.net — असत्यापित. साक्ष्य सारांश: VirusTotal 1/93 (SOCRadar); PhishDestroy score 71/100. रजिस्ट्रार: GoDaddy.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain usdt2rmb.net was registered through GoDaddy.com, LLC and created on February 21, 2026. It resolves to the IPv4 address 97.64.80.117, which belongs to AS25820 (IT7 Networks Inc) in the United States. The authoritative name servers are ns27.domaincontrol.com and ns28.domaincontrol.com, both typical of GoDaddy’s DNS infrastructure. MX records include smtp.secureserver.net with priority 0 and an additional host with priority 10 (partial data). The web server presents an Nginx stack, enforces HTTP Strict Transport Security (HSTS), and supports HTTP/3.
Google Analytics scripts are detected, indicating telemetry collection. The TLS certificate is issued by Let’s Encrypt (R12), confirming use of a free certificate authority. Gridinsoft assigned a trust score of 0 out of 100, reflecting a high likelihood of malicious activity. The domain is currently taken offline, but it has been blocked by PhishDestroy and appears on one external security blocklist. VirusTotal analysis shows that 1 of 93 scanning engines flagged the domain, reinforcing suspicion.
The page title retrieved from the live host reads "优速汇U2R - USDT虚拟卡与速汇服务 | 安全便捷的数字货币支付解决方案," which aligns with a generic phishing profile targeting users interested in digital currency payment services. No additional content has been examined, leaving the exact phishing payload or credential‑capture mechanisms uncertain. Defenders should continue to block the domain at DNS and web‑filter layers, monitor the hosting IP for any re‑activation, and add the associated IP and name servers to threat‑intel feeds. Given the low trust score, presence on a blocklist, and the single VirusTotal detection, the domain should be treated as high‑risk for credential harvesting or monetary fraud until further evidence proves otherwise.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
तकनीकें · 4 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% विश्वासHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% विश्वासGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वासवायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of usdt2rmb.net · checked Mar 2, 2026
साक्ष्य और बाहरी रिपोर्टें
PD-20260125-B66F31 Recipient: abuse@godaddy.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।