voting-gauntlet[.]xyz
“Gauntlet - Crypto Yield Strategies for Institutions”
voting-gauntlet.xyz — Conteúdo indisponível (HTTP 502). Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 13/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Registrador: PDR.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain voting-gauntlet.xyz presents as "Gauntlet - Crypto Yield Strategies for Institutions," mimicking a legitimate brand associated with cryptocurrency yield strategies. The primary threat is that this site is likely a phishing or scam domain designed to deceive users into disclosing sensitive information or connecting cryptocurrency wallets, potentially leading to financial loss. The impersonation of a crypto-related brand indicates an attempt to exploit trust in the DeFi sector.
Technical analysis shows the site was flagged by 6 out of 95 VirusTotal vendors, specifically by alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, and Kaspersky. The domain is hosted on IP 188.114.97.3 (US) under AS13335 Cloudflare, Inc., registered with PDR Ltd. d/b/a PublicDomainRegistry.com, and created on June 16, 2026. SSL is provided by Google Trust Services / WE1, and nameservers are logan.ns.cloudflare.com and suzanne.ns.cloudflare.com. The site has three blocklists and a DOM risk score of 75.
The site is currently down or offline. Given the GridinSoft trust rating of 0/100 and the high DOM risk score of 75, the risk level is assessed as high. The combination of brand impersonation, multiple security vendor flags, and recent creation date strongly indicates malicious intent.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | noteworthy-lox.xyz |
malicious | Sinkholed |
| DNS4EU | noteworthy-lox.xyz |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Evidências e relatórios externos
PD-20260618-BABBC8 Recipient: abuse@publicdomainregistry.com Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo