gosolcoin[.]digital
gosolcoin.digital — Прикритий · доступний. Зведення доказів: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, Bfore.Ai PreCrime, BitDefender, Chong Lua Dao); Spamhaus DBL_MALWARE; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. Реєстратор: PDR.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain gosolcoin.digital was registered on May 25 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and is currently flagged as an active high‑risk phishing infrastructure. The site returns an HTTP 403 response, indicating that direct content retrieval is blocked, and it is protected by a Let’s Encrypt certificate (identifier YE2). DNS resolution points to 104.21.93.30, a Cloudflare‑owned address located in Canada. The authoritative nameservers are maya.ns.cloudflare.com and amos.ns.cloudflare.com, confirming that the domain is fully proxied behind Cloudflare’s network. This arrangement masks the origin server and provides the attacker with DDoS protection and flexible IP reassignment. Open‑source intelligence shows the domain appears in ten AlienVault OTX pulses and is listed on three public blocklists. It has also been deliberately blocked by multiple sink‑hole feeds, including PhishDestroy, MetaMask, and SEAL, underscoring that the indicator is already shared among defensive communities. No detections were reported on VirusTotal at the time of analysis, but the lack of detections does not imply benign intent. Defenders should add gosolcoin.digital to network‑level deny lists and monitor DNS queries for resolution attempts. Because the site is hosted behind Cloudflare, traditional IP‑based blocking may be ineffective; instead, URL filtering or TLS inspection should be employed where policy permits. Continuous observation of the associated IP address and any newly registered subdomains is recommended to detect potential escalation or credential‑stealing payloads.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога