सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 11। किसी मैच की रिपोर्ट करने वाली सार्वजनिक ब्लॉक सूचियाँ: 1। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

web3-defi28[.]icu

“后台管理系统”

धमकी भरा फैसला गंभीर 87/100 साक्ष्य स्कोर
उपलब्धता सामग्री अनुपलब्ध नवीनतम अवलोकन में सामग्री अनुपलब्ध थी
वायरस का कुल पता लगाना: 11/93 Spamhaus DBL: DBL_SPAM संग्रहीत ब्लॉकलिस्ट मिलान: 1 ब्रांड प्रतिरूपण: SafePal
27/02/2026 SafePal 1 Report Sent
रिपोर्ट सारांश

web3-defi28.icu — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: SafePal; घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 11/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 2 det.; Spamhaus DBL_SPAM; 1 external blocklist match (ScamSniffer); PhishDestroy score 87/100. रजिस्ट्रार: Gname.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
DCD5A6DB
स्कोर
87/100

The domain web3-defi28.icu was registered on February 27, 2026 through Gname.com Pte. Ltd. and resolves to the IP address 137.220.194.10, which is hosted in Japan under AS152194 (CTG Server Limited). The authoritative nameservers are a3.share-dns.com and b3.share-dns.net. An SSL certificate issued by Let’s Encrypt (R13) is present, confirming that the site can serve HTTPS traffic, but the certificate does not attest to the legitimacy of the content. HTTP probing on the report date returned a 503 Service Unavailable response, indicating the site was taken offline at the time of analysis.

The page title observed during the brief scan was "后台管理系统", a generic Chinese phrase meaning backend management system, and no further page content was captured. Threat intelligence classifies the site as a crypto‑related scam that impersonates the SafePal brand, employing an "Airdrop Scam" phishing kit commonly used to lure cryptocurrency wallet users. The domain appears on two security blocklists, PhishDestroy and ScamSniffer, and VirusTotal recorded 11 detections out of 93 scanning engines, reinforcing the malicious assessment. Gridinsoft assigned a trust score of 0 out of 100, reflecting extreme risk.

While the site is currently offline, the infrastructure—registrar, hosting location, nameservers, and the presence of a known phishing kit—suggests it could be reactivated to target SafePal users. Defenders should proactively block the domain and its IP address, monitor DNS resolutions for any changes, and include the associated nameservers in threat‑intel feeds. Continued observation of the registrar Gname.com Pte. Ltd. for similar registrations is advised, as is the integration of the observed indicators into email and web gateway filtering rules to mitigate potential future impersonation attempts.

VirusTotal
VirusTotal
11 det.
URLQuery
यूआरएलक्वेरी
2 det.
DNS Security
3/14
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
R13
आयु
6 mo
देखी गई स्थिति
सामग्री अनुपलब्ध
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज VirusTotal 11 / 93 यूआरएलक्वेरी 2 det. फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक 3/14 TLS valid certificate, 39d कौन है 6 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
DNS Provider Blocks 3 / 14
Controld Adblock Controld Family Controld Malware

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
19/19
Sent Report Recorded
Stored sent-report record for registrar Gname.com Pte. Ltd., hosting provider, 1 abuse contact
complaint@gname.com
27/02/2026

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

पेज शीर्षक
后台管理系统
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता R13 · valid for 39 days

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
सर्वर / ASN nginx · AS152194 CTGSERVERLIMITED-AS-AP CTG Server Limited, HK
IP प्रतिष्ठा abuse score 0/100 0 reports checked 27/07/2026
रजिस्ट्रार Gname SG(SG)
दुरुपयोग संपर्कcomplaint@gname.com
IP पता 137.220.194.10 JP
भौगोलिक स्थानJP Tokyo, JP
नेटवर्कAS152194 · CTG Server Limited
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 27/02/2026 (170d) Expires 06/07/2026
पहली अनुपलब्धता तक का समय 17 days
हम क्या मापते हैं पहली संग्रहीत दुरुपयोग रिपोर्ट से लेकर पहली बार अवलोकन तक कि सामग्री अनुपलब्ध थी, बीता हुआ समय। इससे कारण स्थापित नहीं होता.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला27/02/2026
DOM Analysisanalyzed 28/07/2026score 0/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://web3-defi28.icu/
नेमसर्वरb3.share-dns.net
TLS Fingerprint
TLS Observationvalid from 08/01/2026scanned 15/03/2026
TLS SAN Domainsadmins.web3defihub.xyz
Case ID
SHORTDOT ज़ोन · सार्वजनिक साक्ष्य .icu

ShortDot zone evidence

The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.

ShortDot SA · Luxembourg 7 ज़ोन · पूरे ज़ोन के साक्ष्य प्रतिदिन अपडेट किए जाते हैं ShortDot साक्ष्य रिपॉज़िटरी खोलें
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

11 / 93 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
साइरेडार
ईएसईटी
Forcepoint ThreatSeeker
Fortinet
G-Data
Seclookup
SOCRadar
VIPRE

संग्रहीत साक्ष्य

Wayback Machine Snapshot
साक्ष्य समीक्षा के लिए एक ऐतिहासिक स्नैपशॉट उपलब्ध है
View Archive
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of web3-defi28.icu · checked Mar 2, 2026

53
Needs Work
Performance
FCP
3.11s
First Contentful Paint
LCP
15.77s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
311ms
Total Blocking Time
SI
35.72s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

साक्ष्य और बाहरी रिपोर्टें

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260227-6DE097 Recipient: complaint@gname.com
Page title stored with report: 404 Not Found
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 14.6 KB
Blocklist hits included with submission: धोखाधड़ी-खोजी

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/web3-defi28.icu"
  title="PhishDestroy threat report for web3-defi28.icu"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।