vmi2931050[.]contaboserver[.]net
“Dashboard DLLM - Solscan Analytics”
vmi2931050.contaboserver.net — Контент недоступний (HTTP 502). Уособлення бренду: Solana; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 6/93 (alphaMountain.ai, Chong Lua Dao, Dr.Web, Fortinet, Gridinsoft); PhishDestroy score 68/100. Реєстратор: RegistryGate.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain is flagged for elevated risk due to brand_impersonation, specifically targeting Solana’s Solscan Analytics platform. The threat involves presenting a fraudulent interface under the page title 'Dashboard DLLM - Solscan Analytics,' likely designed to deceive users into disclosing sensitive credentials or interacting with malicious smart contracts. Analysis indicates the domain is actively used for cryptocurrency-related fraud, a common vector for draining wallets or harvesting private keys. Infrastructure analysis reveals the domain vmi2931050.contaboserver.net was registered through RegistryGate GmbH on March 05, 2017, though its malicious use appears more recent. It resolves to the IP address 80.190.83.206 and is currently offline, though prior activity is well-documented. The domain holds a Gridinsoft trust score of 0/100 and is listed on three security blocklists, including MetaMask, SEAL, and PhishDestroy. VirusTotal reports 6 out of 95 security vendors flagging the domain as malicious, further corroborating its fraudulent nature. Mitigation steps for this brand_impersonation threat include immediate blacklisting of the domain and its associated IP (80.190.83.206) across all network security controls. Organizations should deploy DNS-based filtering to block resolution attempts and monitor for any residual connections to the IP. End-users should be educated to verify the authenticity of Solana-related platforms by cross-referencing official domains and enabling multi-factor authentication for wallet access. Given the domain’s history, security teams should also investigate potential lateral movement or credential reuse tied to this infrastructure.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: contaboserver.net
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain contaboserver.net behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога