Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@hostup.se.
The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
telegram[.]collide[.]ar
telegram.collide.ar 网络钓鱼与安全检查
“BTOVEN NETWORK - Open Source Tools & Free Services”
telegram.collide.ar — 最后已知的活跃状态 (HTTP 302). 品牌冒充:Telegram; 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 71/100. 注册商: nicar.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies telegram.collide.ar as an active phishing domain masquerading as the Telegram web-login portal. Upon visiting, visitors are shown a convincing fake login form that silently harvests account credentials and connected crypto-wallet private keys. If entered, the data is exfiltrated to attacker-controlled servers, enabling immediate theft of cryptocurrencies and irreversible account takeovers. The domain also serves as a gateway to additional crypto-draining toolkits that scan browser extensions and clipboard contents for wallet addresses and seed phrases.
This domain was flagged through automated crawling combined with community reports and confirmed via network telemetry. Telemetry shows the domain resolves to IP address 82.197.73.64 and is served over a Let’s Encrypt SSL certificate (common among phishing sites to appear legitimate). The domain was originally registered on August 19, 2013 through nicar, a registrar frequently associated with bulk domain acquisitions. VirusTotal analysis confirms zero detections across 95 security engines at the time of writing, indicating the site currently evades most commercial antivirus and browser-based defenses.
If you visited telegram.collide.ar, immediately disconnect from the internet and navigate to a known safe device. Do not enter any credentials or wallet-related information. Check your connected wallets for unauthorized transactions and revoke any suspicious approvals in your wallet settings. Next, run a full antivirus scan on both your computer and mobile devices. Finally, report the domain to PhishDestroy for verification; our system will confirm whether the site remains active and issue a takedown request if still online.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of telegram.collide.ar · checked Apr 5, 2026
证据与外部报告
PD-20260405-000DC3 Recipient: abuse@hostup.se 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。