register-xaman[.]app
“Xaman – XRP Community Day | Vote”
Kanıt özeti
This domain, register-xaman.app, operates as a credential phishing site designed to deceive users of XRP wallets by impersonating an official XRP Community Day voting platform. The site presents a fabricated voting interface under the title 'Xaman – XRP Community Day | Vote,' aiming to harvest sensitive wallet credentials, including private keys or recovery phrases. Such stolen information enables attackers to gain unauthorized access to victims' cryptocurrency holdings, leading to immediate financial theft and potential long-term account compromise. Analysis indicates this domain exhibits multiple high-risk characteristics. It was registered on May 30, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with malicious domains. The site resolves to the IP address 188.114.96.3 and is flagged by 11 out of 95 security vendors on VirusTotal, including detections for social engineering tactics. Additionally, the domain appears on four security blocklists and is actively blocked by multiple threat intelligence platforms. Infrastructure analysis reveals the use of Cloudflare services, which may obscure the true origin of the malicious activity. Users who visited register-xaman.app should immediately cease all interaction with the site and assume their credentials may be compromised. If any sensitive information, such as wallet passwords or recovery phrases, was entered, the affected wallet should be considered at risk. Users are advised to transfer assets to a new, secure wallet using a trusted device and enable multi-factor authentication where available. Monitor all linked accounts for unauthorized transactions and report the incident to relevant cryptocurrency security teams for further mitigation. Regularly update security software and verify the authenticity of any cryptocurrency-related communications before engaging.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260531-3B56C6- Yakalanan sayfa başlığı
- Xaman – XRP Community Day | Vote & Claim Your Allocation
- PDF belgesi
- PDF kanıtı
Hukuki dayanak
Kanıtın tam metni
Acceptable Use Policy (AUP): The domain register-xaman.app is engaged in phishing activities, which directly contravenes the AUP's prohibition against illegal activities and fraud.
Terms of Service (TOS): The registrar reserves the right to suspend or terminate services for violations, and the ongoing phishing operations constitute a clear violation of these terms.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access and fraud in connection with computers, which applies to phishing schemes.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities via electronic communications, which is relevant to the activities associated with this domain.
Anti-Phishing Act: This legislation aims to combat phishing and other forms of online fraud, making the operation of register-xaman.app illegal.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny. It is imperative to act swiftly to mitigate potential risks associated with this violation.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Tespit zaman çizelgesi
-
VirusTotal
3 → 11
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
4 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin