kuluthepangolin[.]live
“Kulu the Pangolin - Innovative Crypto Projects”
Kanıt özeti
On July 25, 2026 analysis flagged kuluthepangolin.live as an active high‑risk brand‑impersonation infrastructure. The domain resolves to 104.21.37.132, an address owned by Cloudflare (ASN 13335) located in the United States. DNS resolution is delegated to emma.ns.cloudflare.com and kurt.ns.cloudflare.com, confirming the use of Cloudflare’s authoritative name servers. The TLS certificate presented is issued by Google Trust Services under the WE1 intermediate, indicating a valid‑looking HTTPS endpoint but offering no assurance of legitimacy. The page title returned from the HTTP request is “Kulu the Pangolin – Innovative Crypto Projects,” and the HTTP response code is 403, which may be used to obscure content from casual browsers while still serving malicious payloads to targeted victims.
Technology fingerprints include Cloudflare Browser Insights, the Cloudflare edge platform, and HTTP/3 support, all typical of fast‑flushed CDN deployments. Reputation scoring from Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on one known security blocklist. VirusTotal reports that 2 of 95 scanning engines have flagged the host, reinforcing the suspicion of malicious activity. PhishDestroy has also listed the domain as blocked, and the overall classification is a crypto‑scam that impersonates the brand “across,” suggesting the site attempts to lure users into fraudulent cryptocurrency investments. The registrar listed for the domain is Web Commerce Communications Limited, a provider often associated with bulk‑registered malicious domains.
No additional open‑source intelligence such as OTX indicators or Safe Browsing entries was observed in the provided data, leaving the full scope of the campaign uncertain. Defenders should block DNS resolution to kuluthepangolin.live at the network perimeter, enforce TLS inspection to verify the certificate chain, and monitor for outbound connections to the IP 104.21.37.132.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
Tespit zaman çizelgesi
-
VirusTotal
2 → 1
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of kuluthepangolin.live · checked Mar 2, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin