ripple26[.]org
Зведення доказів
Analysis of ripple26.org indicates a confirmed phishing domain actively engaged in social engineering campaigns as of July 12, 2026. The domain, registered on April 30, 2026, through Key-Systems GmbH, resolves to IP address 104.21.61.23, hosted on Cloudflare infrastructure in Canada. Current HTTP response yields a 403 status code with the page title 'Just a moment...', a common placeholder used during redirection or proxy-based filtering. Infrastructure review reveals the domain is flagged by Google Safe Browsing under the 'SOCIAL_ENGINEERING' category, aligning with its classification as a high-risk threat. One security blocklist currently includes ripple26.org, and five out of 91 security vendors on VirusTotal detect it as malicious. The domain holds a Gridinsoft trust score of 0/100, further supporting its classification as untrustworthy. SSL certification is provided by Let's Encrypt, a common but not exclusive indicator among malicious domains. No specific brand impersonation or phishing kit has been identified in available data, and the exact content or target of the social engineering attempt remains unconfirmed. Defenders are advised to block the domain at the DNS or proxy level, monitor for connections to 104.21.61.23, and review logs for any prior interactions with ripple26.org. Given its active status and high-risk classification, immediate containment is recommended.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 31.05.2026
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Дані спільноти
1 повідомлення спільноти
КатегоріяFAKE_RETURNS
Started at youtube Live, ceo offered rewards to all user who held xrp. had qrcode to scan sent to website to follow instructions. Send your xrp and double will be sent back so i followed instructions then site and YouTube live all disappeared after.
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога