dopplerfinance[.]info
“Doppler Finance — Claim Your DP Points Allocation”
Kanıt özeti
Analysis as of July 22 2026 shows that dopplerfinance.info was registered on 20 May 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and resolved to 188.114.96.3, an address owned by Cloudflare (AS13335) in the United States. The site employed HSTS, Cloudflare Browser Insights, HTTP/3, and presented a Let’s Encrypt /E8 certificate, indicating standard Cloudflare front‑end services. The page title observed was “Doppler Finance — Claim Your DP Points Allocation,” suggesting a credential‑harvesting lure aimed at users of a financial‑related service.
The domain is currently taken offline, but it remains listed in four security blocklists and has a Gridinsoft trust score of 0 / 100, reflecting a high confidence of malicious intent. VirusTotal records show four of ninety‑five scanning engines flag the domain, and the site is actively blocked by PhishDestroy, MetaMask, ScamSniffer, and SEAL, reinforcing the assessment of a phishing operation. Nameservers liv.ns.cloudflare.com and merlin.ns.cloudflare.com confirm the use of Cloudflare’s DNS infrastructure.
While the exact content of the landing page has not been captured, the combination of a deceptive financial‑related title, low trust score, multiple blocklist entries, and vendor detections strongly points to a generic phishing campaign. Defenders should continue to block the domain at perimeter defenses, monitor for any re‑activation, and advise users to avoid any unsolicited requests to claim “DP points.” Threat intelligence feeds should retain the indicator – dopplerfinance.info – and correlate future activity against the associated IP and certificate. Until the domain is permanently taken down, it remains a credential‑stealing risk.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260531-6B3CFB- Yakalanan sayfa başlığı
- dopplerfinance.info/
- PDF belgesi
- PDF kanıtı
Hukuki dayanak
Kanıtın tam metni
Acceptable Use Policy (AUP): The domain dopplerfinance.info is engaged in phishing activities, which constitutes a clear violation of your AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The ongoing use of this domain for deceptive practices allows for immediate grounds for suspension or termination of services as outlined in your TOS.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and fraudulent activities, applicable regardless of the domain's registration location.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities using electronic communications, which is relevant given the phishing nature of this domain.
CAN-SPAM Act: This act regulates commercial email and prohibits misleading headers and deceptive subject lines, applicable to phishing schemes.
Regulatory Note: Failure to act on this report may expose your organization to liability under applicable laws and regulations. Immediate action is recommended to mitigate potential legal repercussions.
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | dopplerfinance.info |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
7 izlenen harici kaynak Eşleşme yok
Kaydedilmiş sonuç kanıtı
Sonuç ve kaldırma ilişkilendirmesi
- Sonuç
held- Erişilebilirlik
unreachable- Neden
registrar_client_hold- Aktör
- NICENIC INTERNATIONAL GROUP CO., LIMITED
- Mekanizma
client_hold- Güven
- 95%
- İlk gözlem
- Son gözlem
Tahmini erişilememe
Erişilemezliğe kadar geçen süre: 0 hKanıt SHA-256 2114deddb207
Tespit zaman çizelgesi
-
Erişilebilirlik
İlk kayıtlı değer: DNS etkin değil
f93a11f87e4d -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
d4b042c85243 -
Erişilebilirlik
Bilinmiyor → DNS etkin değil
ed99bb1fac13 -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
d01867804f42 -
Erişilebilirlik
Bilinmiyor → DNS etkin değil
6dfe9145995c -
Erişilebilirlik
DNS etkin değil → Bekletiliyor
d9a19d4f9e2d -
Erişilebilirlik
Bekletiliyor → DNS etkin değil
641ed81dc4d5 -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
870c6cb58643 -
Erişilebilirlik
Bilinmiyor → Bekletiliyor
53ae57316647 -
Erişilebilirlik
Bekletiliyor → Bilinmiyor
e2cd440c89da
Tümünü göster (8)
-
Erişilebilirlik
Bilinmiyor → DNS etkin değil
d0b7046e8c2f -
Erişilebilirlik
DNS etkin değil → Bekletiliyor
dfe476ed6372 -
Erişilebilirlik
Bekletiliyor → DNS etkin değil
ca9ed662b468 -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
a1130da42fc8 -
Erişilebilirlik
Bilinmiyor → Bekletiliyor
d9e5eb5ff554 -
Erişilebilirlik
Bekletiliyor → DNS etkin değil
92f667ff6e00 -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
ddb6dc6a182a -
Erişilebilirlik
Bilinmiyor → Bekletiliyor
2114deddb207
Topluluk raporları
1 topluluk üyesi tarafından bildirildi; ilk görülme 31.05.2026
- Kayıtlı raporlar
- 1
- Bildirilen benzersiz URL’ler
- 1
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
4 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin