gosolcoin[.]digital
gosolcoin.digital — 隐形 · 可达. 证据摘要: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, Bfore.Ai PreCrime, BitDefender, Chong Lua Dao); Spamhaus DBL_MALWARE; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. 注册商: PDR.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain gosolcoin.digital was registered on May 25 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com and is currently flagged as an active high‑risk phishing infrastructure. The site returns an HTTP 403 response, indicating that direct content retrieval is blocked, and it is protected by a Let’s Encrypt certificate (identifier YE2). DNS resolution points to 104.21.93.30, a Cloudflare‑owned address located in Canada. The authoritative nameservers are maya.ns.cloudflare.com and amos.ns.cloudflare.com, confirming that the domain is fully proxied behind Cloudflare’s network. This arrangement masks the origin server and provides the attacker with DDoS protection and flexible IP reassignment. Open‑source intelligence shows the domain appears in ten AlienVault OTX pulses and is listed on three public blocklists. It has also been deliberately blocked by multiple sink‑hole feeds, including PhishDestroy, MetaMask, and SEAL, underscoring that the indicator is already shared among defensive communities. No detections were reported on VirusTotal at the time of analysis, but the lack of detections does not imply benign intent. Defenders should add gosolcoin.digital to network‑level deny lists and monitor DNS queries for resolution attempts. Because the site is hosted behind Cloudflare, traditional IP‑based blocking may be ineffective; instead, URL filtering or TLS inspection should be employed where policy permits. Continuous observation of the associated IP address and any newly registered subdomains is recommended to detect potential escalation or credential‑stealing payloads.
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。