xrp-give[.]cc
“1 new message”
xrp-give.cc — コンテンツが利用できません (HTTP 502). ブランドの偽装: XRP; 詐欺タイプ: Brand Impersonation. 証拠の概要: VirusTotal 14/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); PhishDestroy score 92/100. レジストラ: CNOBIN INFORMATION TEC….
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
Analysis of xrp-give.cc as of July 23, 2026 indicates that the domain is actively leveraged for brand impersonation targeting the cryptocurrency XRP. The domain was registered on 7 November 2025 through CNOBIN INFORMATION TECHNOLOGY LIMITED and resolves to the IP address 188.114.96.3, which is owned by Cloudflare, Inc. (AS13335) and geolocated to the United States. DNS resolution uses Cloudflare’s authoritative nameservers david.ns.cloudflare.com and hera.ns.cloudflare.com, suggesting the infrastructure is hosted behind Cloudflare’s CDN and WAF services. No TLS certificate is presented for the domain, meaning HTTPS connections are not available, which is consistent with a low‑trust configuration. The Gridinsoft trust score of 0 out of 100 further confirms the site’s malicious reputation.
Multiple detection mechanisms have flagged the domain. PhishDestroy has listed it as blocked, and it appears on at least one public security blocklist. VirusTotal reports that 14 of 95 scanned security vendors identified the domain as malicious, reinforcing the suspicion of phishing activity. The page title returned by HTTP requests is “1 new message,” which does not provide any legitimate context and may be used to entice victims. The current operational status is reported as offline, indicating that the site may have been taken down or is temporarily inaccessible, but the underlying infrastructure remains observable.
Given the evidence, defenders should continue to block DNS resolution for xrp-give.cc at the network perimeter and add the associated IP address 188.114.96.3 to any deny lists, keeping in mind that the IP belongs to a shared Cloudflare range and may host other unrelated services. Monitoring of the domain’s registration renewal and any re‑appearance of active web content is advised. Organizations that hold XRP assets should educate users about unsolicited messages claiming to originate from XRP‑related services and reinforce the use of official channels only.
脅威対応 Pipeline
公開ブロックリスト登録状況
フォレンジックインテリジェンス
VirusTotalによる分析
証拠および外部報告書
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください