VirusTotal
9 / 92
“The Index — hold it, get paid in stocks”
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@spaceship.com.
The latest stored availability evidence still shows the domain reachable; 4 days has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
theindexfinance.forum — Останній відомий активний (HTTP 200). Уособлення бренду: Lido; Тип шахрайства: Impersonation. Зведення доказів: VirusTotal 9/92 (alphaMountain.ai, BitDefender, CRDF, Forcepoint ThreatSeeker, Fortinet); URLQuery 3 det.; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Реєстратор: Spaceship.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
9 / 92
3 det.
Повідомити4 community references
Повідомитиprovider verdict: suspicious
Повідомитизбережений звіт
Повідомити Аналіз завершено
ПовідомитиChecked; no threat flag recorded
Повідомитиtheindexfinance.forum was observed on 2026-10-07 with a PageSpeed performance score of 76, and is listed on both MetaMask and SEAL external blocklists. The domain was also internally listed by Phishdestroy on the same date.
VirusTotal checked the domain on 2026-10-07, reporting 0 detections out of 92 scanners. OTX recorded four pulses for theindexfinance.forum on 2026-10-07. The registrar is Spaceship, Inc., with the registration date recorded as 2026-10-07.
The presence of theindexfinance.forum on MetaMask and SEAL blocklists, along with multiple OTX pulses, shows that the domain has been noted by several security monitoring sources. VirusTotal's scan across numerous engines did not identify detections, while the PageSpeed score provides additional technical context. These observations reflect a range of monitoring and reporting activity focused on the domain.
For theindexfinance.forum, retain records from MetaMask, SEAL, OTX, VirusTotal, and Phishdestroy for ongoing comparison. Review these sources regularly to track any updates in blocklist status or security observations. Use the gathered evidence to inform decisions regarding engagement with the domain.
Full extracted values, their blockchain and collection source. An address found in page content does not establish who controls it.
0x12f190a9f9d7d37a250758b26824b97ce941bf54Format validated · Domain analysis0x2e0847e8910a9732eb3fb1bb4b70a580adad4fe3Format validated · Domain analysis0x322f0929c4625ed5bad873c95208d54e1c003b2dFormat validated · Domain analysis0x39ADB8acD07427D338b5f1AfAb436A04AbFdB7c4Format validated · Domain analysis0x4a0e65a3eccec6dbe60ae065f2e7bb85fae35eeaFormat validated · Domain analysis0x5f10a1c971b69e47e059e1dc91901b59b3fb49c3Format validated · Domain analysis0x6330d8c3178a418788df01a47479c0ce7ccf450bFormat validated · Domain analysis0x822cc93ffd030293e9842c30bbd678f530701867Format validated · Domain analysis0x86923f96303d656e4aa86d9d42d1e57ad2023fdcFormat validated · Domain analysis0x894e1ec2d74ffe5aef8dc8a9e84686accb964f2aFormat validated · Domain analysis0xaf3d76f1834a1d425780943c99ea8a608f8a93f9Format validated · Domain analysis0xb0992820e760d836549ba69bc7598b4af75dee03Format validated · Domain analysis0xb90a19ff0af67f7779aff50a882a9cff42446400Format validated · Domain analysis0xc0d6457c16cc70d6790dd43521c899c87ce02f35Format validated · Domain analysis0xc72b96e0e48ecd4dc75e1e45396e26300bc39681Format validated · Domain analysis0xd0601ce157db5bdc3162bbac2a2c8af5320d9eecFormat validated · Domain analysis0xd917b029c761d264c6a312bbbcda868658ef86a6Format validated · Domain analysis0xe93237c50d904957cf27e7b1133b510c669c2e74Format validated · Domain analysis0xff080c8ce2e5feadaca0da81314ae59d232d4afdFormat validated · Domain analysisIoC extraction recorded 2026-10-08 04:00:54 UTC
Збережені дані спостережень за взаємодією веб-сканера та браузера для цього хоста, а також перевірка відбитків у режимі реального часу для систем розподілу трафіку типу «Кейтаро».
cloudflareПримітка щодо сканера: alive_content: raw=ok; http=200; via=https_proxy; server=cloudflare
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Репутація Edge-IP не пов’язана з цим доменом.
kristin.ns.cloudflare.compete.ns.cloudflare.comLocation describes the IP network.
7085f13ed55189e119b41660f8e0112bfc34af684c8ebb32c766f99fc9c77449Saved certificate metadata. Certificate dates without a timezone are shown as stored. Transport encryption does not establish that the site is trustworthy.
Google PageSpeed Insights — mobile performance audit of theindexfinance.forum · checked Oct 7, 2026
188.114.96.3. 11 recorded events. These records describe collected evidence, outgoing notifications and publication; they do not confirm a complete investigation or a takedown.
We scan suspicious URLs, inspect public results and send evidence through the appropriate abuse-reporting channels. The dated events above show what is recorded for this domain. The directory below explains the wider workflow.
Capture the rendered page, requests and visible infrastructure.
Compare the available engine results and retain the analysis timestamp.
Check whether Google currently lists the URL as unsafe.
Inspect a public scan and its recorded network and classification data.
Look for indicator references and related community intelligence.
Compare archived captures and preserve historical context.
Look for matching indicators and associated threat records.
Inspect certificate records and related hostnames.
Compare security resolver responses and record observed blocking.
Inspect the public DNS, TLS, HTTP and technology surface.
Security services used for scanning, reputation checks and reporting are listed below. A service being listed is not evidence that it received, accepted or acted on this particular domain. Recorded submissions appear in the notification history above.
Збережено 30 схожих доменів
PD-20261007-3C8AA8 Recipient: abuse@spaceship.com Policy Violations: Illegal Activities: Active phishing operation targeting victims Fraud & Deception: Impersonation of legitimate services Identity Theft: Collection of credentials under false pretenses Applicable Laws (Unknown): International Anti-Cybercrime Regulations Budapest Convention on Cybercrime Universal Fraud Prevention Laws Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws. Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Template-based draft · optional AI wording assistance requires separate consent
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразДодавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиОстанні звіти про фішинг і помічені зміни доступності
ВідстежуватиСлідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога