manifesting-rewards[.]top
manifesting-rewards.top — Неперевірений. Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 78/100. Реєстратор: NameSilo.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, manifesting-rewards.top, is flagged as a high-risk phishing infrastructure targeting users with fraudulent reward schemes. Registered on May 27, 2026, through NameSilo, LLC, the domain remains active as of July 12, 2026, and resolves to the IP address 188.114.97.3, which is associated with CloudFlare, Inc. in Canada. The use of CloudFlare nameservers (amos.ns.cloudflare.com and dayana.ns.cloudflare.com) and a Let's Encrypt SSL certificate (E8) aligns with common tactics to obscure hosting origins and present a veneer of legitimacy, though such configurations are frequently exploited by threat actors to evade detection. Analysis indicates the domain is currently serving a 403 HTTP status, suggesting either a deliberate attempt to restrict access to specific visitors or an incomplete deployment of malicious content. Despite this, the domain appears on one security blocklist and is flagged by 5 out of 95 security vendors on VirusTotal, reinforcing its classification as malicious. The Gridinsoft trust score of 0/100 further corroborates its high-risk status, though the absence of additional context—such as the specific brand being impersonated or the phishing kit in use—limits definitive attribution beyond a generic rewards-themed lure. Defenders should treat this domain as an active threat, particularly given its recent registration and association with CloudFlare’s infrastructure, which is often leveraged to mask the true origin of phishing campaigns. The combination of a short domain lifespan, low trust scores, and partial vendor detections suggests this is likely part of a broader, evolving operation. Network-level blocking is recommended, along with monitoring for related domains that may share similar naming conventions or infrastructure patterns. Organizations should also inspect logs for any prior connections to 188.114.97.3 or associated CloudFlare IP ranges, as these may indicate compromised endpoints or targeted phishing attempts.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога