Issue ID df9b8ddaf181 (PHISHING URL)

https://safepal.zip/


Generated at 2025-02-06 20:19:24 GMT+2:00

EN flag EN
EN flag EN
RU flag RU
ZH flag ZH
DE flag DE
ES flag ES
JA flag JA
IS flag IS
This incident is currently under investigation.

APVA found evidence that URL is currently hosting a phishing attack against Safepal Wallet.

URL Details

IP address 185.232.204.56
Country Finland flag Finland
RegistrarNamecheap Inc.
RegistryCharleston Road Registry Inc.
Netblock ownerAS50053 Individual Entrepreneur Anton Levin

WHOIS Information

% IANA WHOIS server
% This query returned 1 object

refer:        whois.nic.google

domain:       ZIP

organisation: Charleston Road Registry Inc.
address:      1600 Amphitheatre Parkway
address:      Mountain View CA 94043
address:      United States of America (the)

contact:      administrative
name:         TLD Admin
organisation: Google Inc.
address:      111 8th Avenue
address:      New York NY 10011
address:      United States of America (the)
phone:        +1 404 978 8419
fax-no:       +1 650 492 5631
e-mail:       [email protected]

contact:      technical
name:         TLD Engineering
organisation: Google Inc.
address:      76 Ninth Avenue, 4th Floor
address:      New York NY 10011
address:      United States of America (the)
phone:        +1 404 978 8419
fax-no:       +1 650 492 5631
e-mail:       [email protected]

nserver:      NS-TLD1.CHARLESTONROADREGISTRY.COM 2001:4860:4802:32:0:0:0:69 216.239.32.105
nserver:      NS-TLD2.CHARLESTONROADREGISTRY.COM 2001:4860:4802:34:0:0:0:69 216.239.34.105
nserver:      NS-TLD3.CHARLESTONROADREGISTRY.COM 2001:4860:4802:36:0:0:0:69 216.239.36.105
nserver:      NS-TLD4.CHARLESTONROADREGISTRY.COM 2001:4860:4802:38:0:0:0:69 216.239.38.105
nserver:      NS-TLD5.CHARLESTONROADREGISTRY.COM 2001:4860:4805:0:0:0:0:69 216.239.60.105
ds-rdata:     37525 8 2 32eb9249d844b8593cf81fa5e2cec76cfcc536c249e116ea9b49269ac8f239ce

whois:        whois.nic.google

status:       ACTIVE
remarks:      Registration information: https://www.registry.google

created:      2014-08-23
changed:      2020-04-20
source:       IANA

Domain Scan Results

Security Vendor Result
VirusTotal icon VirusTotal 11/94
Spamhaus icon Spamhaus Listed
Cisco Talos icon Cisco Talos Malware
Norton icon Norton Warning
Palo Alto icon Palo Alto Phishing
Quad9 icon Quad9 Listed

Was this report sent incorrectly?

Please report the error to us at [email protected].