vote-flarefoundation[.]com
Kanıt özeti
The domain vote-flarefoundation.com is identified as a high-risk phishing site specifically designed to impersonate the Flare Foundation, a known blockchain network. Analysis indicates this infrastructure was engineered to harvest cryptocurrency wallet credentials, private keys, or seed phrases from unsuspecting users under the pretense of official Flare Foundation services or token distributions. The site is currently offline, though prior activity suggests it was actively used in credential theft campaigns targeting decentralized finance participants. Infrastructure analysis reveals the domain was registered on May 28, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar frequently associated with high-volume domain registrations linked to fraudulent activity. The domain resolved to the IP address 188.114.96.3, a host previously observed in other phishing operations. Detection metrics confirm its malicious nature: 16 of 95 security vendors on VirusTotal flagged the domain as malicious, while it appears on three distinct security blocklists. Protective measures implemented by multiple detection platforms, including wallet security tools and threat intelligence feeds, have contributed to its current offline status. Given the domain's history and infrastructure, users are strongly advised to treat any prior interaction with vote-flarefoundation.com as compromised. Security teams should monitor network logs for connections to 188.114.96.3 and the domain itself, as these serve as concrete indicators of compromise. Organizations are recommended to update blocklists with the provided indicators, conduct internal audits for exposure, and educate users on recognizing impersonation tactics targeting blockchain services. While the site is offline, similar domains may emerge; vigilance and proactive threat hunting are critical to mitigating further risk.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Kaydedilmiş sonuç kanıtı
Sonuç ve kaldırma ilişkilendirmesi
- Sonuç
held- Erişilebilirlik
unreachable- Neden
registrar_client_hold- Aktör
- NICENIC INTERNATIONAL GROUP CO., LIMITED
- Mekanizma
client_hold- Güven
- 95%
- İlk gözlem
- Son gözlem
Tahmini erişilememe
Erişilemezliğe kadar geçen süre: 0 hKanıt SHA-256 2d574fb9978f
Tespit zaman çizelgesi
-
VirusTotal
3 → 16
-
Erişilebilirlik
İlk kayıtlı değer: DNS etkin değil
f93a11f87e4d -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
a649d9a8e51e -
Erişilebilirlik
Bilinmiyor → DNS etkin değil
ccd5568d6db1 -
Erişilebilirlik
DNS etkin değil → Bekletiliyor
c4ff202fee21 -
Erişilebilirlik
Bekletiliyor → DNS etkin değil
f52d526b76a1 -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
8c326b9fd54f -
Erişilebilirlik
Bilinmiyor → Bekletiliyor
d6df006a53a0 -
Erişilebilirlik
Bekletiliyor → Bilinmiyor
11a4288f970b -
Erişilebilirlik
Bilinmiyor → DNS etkin değil
6dfe9145995c
Tümünü göster (7)
-
Erişilebilirlik
DNS etkin değil → Bekletiliyor
a67f806b74d3 -
Erişilebilirlik
Bekletiliyor → DNS etkin değil
641ed81dc4d5 -
Erişilebilirlik
DNS etkin değil → Bilinmiyor
88712d06c90d -
Erişilebilirlik
Bilinmiyor → Bekletiliyor
f129ede45eba -
Erişilebilirlik
Bekletiliyor → Bilinmiyor
988ed0b23af8 -
Erişilebilirlik
Bilinmiyor → DNS etkin değil
d0b7046e8c2f -
Erişilebilirlik
DNS etkin değil → Bekletiliyor
2d574fb9978f
Topluluk raporları
1 topluluk üyesi tarafından bildirildi; ilk görülme 28.05.2026
- Kayıtlı raporlar
- 1
- Bildirilen benzersiz URL’ler
- 1
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of vote-flarefoundation.com · checked Jun 26, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin