Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
sapien-vote[.]com
“Sapien labeling”
Ringkasan bukti
The domain sapien-vote.com was registered on February 21, 2026 through Dominet (HK) Limited and is currently offline. Its authoritative nameservers are eloise.ns.cloudflare.com and pete.ns.cloudflare.com, indicating use of Cloudflare’s DNS infrastructure. DNS resolution points to IP address 172.67.149.102, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The site served an HTTPS certificate issued by Google Trust Services under the WE1 label, and the presence of HTTP Strict Transport Security (HSTS) and HTTP/3 confirms modern TLS configuration.
Analysis of the page title returned "Sapien labeling," but no further content has been disclosed. The domain is classified as a wallet/seed phishing campaign targeting the Metamask brand, a form of brand impersonation. Security rating from Gridinsoft is 0 out of 100, reflecting extreme distrust. Two independent blocklist operators, PhishDestroy and ScamSniffer, have already added the domain to their blocklists, and VirusTotal records indicate that 2 of 93 scanned security vendors flagged the domain.
The combination of recent registration, low trust score, Cloudflare hosting, and targeted brand impersonation suggests a high‑confidence malicious indicator. Defensive teams should ensure the domain is blocked at perimeter and DNS filters, monitor for any resurgence, and consider adding the associated IP range to block lists pending further investigation. Continuous telemetry from URL and certificate reputation services is recommended to detect potential re‑use of the same infrastructure for future campaigns.
Snapshot bukti yang dikirim
- Dikirim
- Catatan buku besar
- 1
- ID kasus
PD-20260124-8B441F
Teks bukti lengkap
Acceptable Use Policy (AUP) - Section on Fraud and Deception: The domain sapien-vote.com is actively engaged in phishing activities, misleading users into providing sensitive information under false pretenses.
Terms of Service (TOS) - Section on Suspension of Services: The registrar reserves the right to suspend or terminate services for any violations, including those related to illegal activities and fraud, which are clearly applicable in this case.
Applicable Laws (MY):
Computer Crimes Act 1997 (Act 563): This law prohibits unauthorized access to computer systems and data, which is relevant as phishing constitutes unauthorized access to personal information.
Malaysian Penal Code - Section 420: This section addresses cheating and dishonestly inducing delivery of property, applicable to the fraudulent activities associated with phishing schemes.
Regulatory Note: Failure to take immediate action against sapien-vote.com may result in liability under Malaysian law, as well as potential penalties for non-compliance with your own AUP and TOS. Prompt action is essential to mitigate legal risks and uphold the integrity of your services.
Data Coverage
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 12/08/2026
9 sumber eksternal dipantau Tidak cocok
Linimasa deteksi
-
Cloudflare Radar
Pemindaian Cloudflare Radar tersimpan · Buka pemindaian
-
Status domain
Dapat dijangkau → Tidak dapat dijangkau
-
Status domain
Dapat dijangkau → Tidak dapat dijangkau
-
Cloudflare Radar
Pemindaian Cloudflare Radar tersimpan · Buka pemindaian
-
Status domain
Tidak dapat dijangkau → Dapat dijangkau
Tangkapan tersimpan
Intelijen Domain
Detail teknisDNS, nama TLS, dan stempel waktu
ICANN OVERSIGHT
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi
3 teknologi dengan keyakinan tinggi teridentifikasi
Analisis VirusTotal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive