Why this matters — ICANN RAA §3.18 obligation
On PhishDestroy delivered an evidence-backed abuse report
to abuse@namesilo.com with VirusTotal detections, urlscan capture, legal violations, and full screenshot evidence.
More than 4 months later, the phishing infrastructure remains reachable
.
Under ICANN RAA §3.18 accredited registrars are contractually obliged to “take reasonable and prompt steps to investigate and respond appropriately to any reports of abuse.” Silence beyond 24 hours after a documented notification with verifiable evidence is not a timing issue — it is a policy decision to let the operation continue. PhishDestroy\'s position: where a registrar fails to act on clear evidence, the registrar has aligned itself with the operator of the scheme and bears co-responsibility for downstream harm caused to victims from the moment of notification onward.
xrplnode[.]dev
Kiểm tra lừa đảo và bảo mật cho xrplnode.dev
“Attention Required! | Cloudflare”
xrplnode.dev: 6/94 công cụ VirusTotal đã gắn cờ tên miền này. Xem DNS, SSL, nhà đăng ký, danh sách chặn và dữ liệu về mối đe dọa.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
PhishDestroy first recorded xrplnode.dev on Mar 22, 2026. This English evidence brief is rebuilt from the current structured observations stored for the report. The current evidence score, computed from those stored observations, is 80/100.
The latest stored availability state is “Reachable · access restricted” (HTTP 403) on Aug 2, 2026 at 00:14 UTC. This is a reachability snapshot, not proof of the cause of any outage, restriction, or status change.
VirusTotal returned 6 detections from 94 scanners in the stored check on Jul 18, 2026 at 20:45 UTC. The independent blocklist snapshot recorded 0 matches across 10 configured external sources on Aug 2, 2026 at 00:20 UTC. PhishDestroy's own listing is excluded from that count. A zero-match snapshot is not a safety verdict.
Other stored evidence. Google Safe Browsing stored no positive flag on Mar 22, 2026 at 19:19 UTC. This time-bound result is not evidence of safety. AlienVault OTX stored 0 pulse references on Mar 22, 2026 at 19:19 UTC. OTX pulses are community-intelligence references, not vendor verdicts. Spamhaus DBL stored the result DBL_MALWARE on Jul 14, 2026 at 00:38 UTC. A URLScan capture is stored, but no capture timestamp is available.
Stored context lists registrar NameSilo, LLC, IP address 188.114.96.3, registration date Mar 22, 2026, apparent target Cloudflare. Except for the registration date, these fields do not share a source timestamp in this report and may change.
Treat these as stored, time-bound observations rather than a live safety guarantee. Source verdicts and reachability can change, and zero or missing vendor matches never prove that a domain is safe. Avoid interacting with the domain while uncertainty remains, and use the appeal process if this report is inaccurate.
Tình báo an ninh mạng Registrar Integrity Alert
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Thu thập bằng chứng
Thông tin về tên miền
Chi tiết kỹ thuậtDNS, SAN trong SSL, dấu thời gian
GIÁM SÁT ICANN · ĐÃ THU PHÍ
ICANN Đã Nhận Tiền. Trách Nhiệm Giải Trình Thì Không Thấy Đâu.
ICANN Đã Nhận Tiền. Trách Nhiệm Giải Trình Thì Không Thấy Đâu.
Đối với gTLD này, nhà đăng ký tên miền nêu trên hoạt động theo hợp đồng với ICANN. ICANN thu các khoản phí hằng năm, phí biến đổi và phí theo giao dịch gắn với việc đăng ký, gia hạn và chuyển nhượng.
Công nhận: đã kiếm ra tiền. Trách nhiệm giải trình: vui lòng kiểm tra lại sau.
Rồi phép màu bắt đầu: ICANN viết RAA §3.18, nhà đăng ký tự điều tra hành vi lạm dụng ngay trong chính nhóm khách hàng của mình, còn nạn nhân cung cấp bằng chứng miễn phí trong khi mọi tầng nấc đều chờ người khác hành động. Nếu điều đó khiến nạn nhân cảm thấy an toàn hơn thì tuyệt vời—hóa đơn đã phát huy tác dụng.
Công nghệ · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Phân tích của VirusTotal
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of xrplnode.dev · checked Mar 22, 2026
Bằng chứng và các báo cáo bên ngoài
Bạn có bị ảnh hưởng bởi trang web này không?
If you entered account credentials, personal or payment information, or downloaded a file from this domain, take immediate action. Below are resources to help you report the incident and protect yourself.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận các đầu mối liên hệ chính thức về tội phạm mạng, or create a complaint draft →
About This Report: xrplnode.dev
This report presents the latest stored evidence available to PhishDestroy. Source timestamps are shown where available; availability and vendor verdicts can change after collection.
The site displays a page titled “Attention Required! | Cloudflare”, which may be designed to impersonate Cloudflare.
xrplnode.dev has been flagged by 6 security vendors as of August 1, 2026.
Nếu bạn cho rằng thông tin trong danh sách này không chính xác, bạn có thể nộp đơn kháng cáo. Để biết thêm thông tin về phương pháp luận của chúng tôi, hãy truy cập trang web của chúng tôi Trang Câu hỏi thường gặp.
Kiểm tra bất kỳ tên miền nào
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
ReportDòng tin tức về các mối đe dọa thời gian thực
Recent phishing reports and observed availability changes
MonitorLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai
