xaman[.]guru
“Xaman Wallet™ | Security and Control for XRP”
Osservazione memorizzata
Contrasto dei titoli osservato
Riepilogo delle prove
The domain xaman.guru impersonates the legitimate Xaman cryptocurrency wallet brand, presenting itself as "Xaman Wallet™ | Security and Control for XRP." This site poses a threat as a cryptocurrency phishing or credential harvesting operation, designed to deceive users into revealing sensitive wallet information or sending funds to attackers.
Technical evidence confirms the malicious nature of xaman.guru. VirusTotal reports 8 out of 95 security vendors flagged the domain, including ADMINUSLabs, alphaMountain.ai, CyRadar, Emsisoft, and Fortinet. The domain is hosted on IP address 151.101.195.7, assigned to AS54113 Fastly, Inc. in the United States. It was registered on 2026-02-21 with NiceNIC International Group Co., Limited and uses nameservers marlowe.ns.cloudflare.com and jakub.ns.cloudflare.com. The SSL certificate is issued by Certainly / Certainly Intermediate R1.
The site is currently down or offline. Based on the high detection rate across multiple security vendors and its impersonation of a well-known cryptocurrency wallet, the risk level is high for any users who may have encountered it while active.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260220-ED02AD- Titolo della pagina acquisita
- Xaman Wallet™ | Security and Control for XRP
- Artefatto PDF
- Prova in PDF
Base giuridica
Testo completo delle prove
Section 3.1 of the AUP: The domain xaman.guru is engaged in phishing activities, which are explicitly prohibited under your Acceptable Use Policy.
Section 5.2 of the TOS: The registrar reserves the right to suspend or terminate services for any violation of the TOS, including the use of services for fraudulent purposes.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which includes phishing schemes aimed at obtaining sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, applicable to phishing activities.
Anti-Phishing Act (15 U.S.C. § 7704): This act prohibits the use of misleading email headers and deceptive subject lines in commercial electronic mail messages.
Regulatory Note: Failure to act on this report may expose your organization to liability under applicable laws and could result in regulatory scrutiny. Immediate action is advised to mitigate potential legal repercussions.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 12/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
-
Stato del dominio
Raggiungibile → Non raggiungibile
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
-
Stato del dominio
Non raggiungibile → Raggiungibile
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie
5 tecnologie identificate con alta affidabilità
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of xaman.guru · checked Mar 2, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo