Threat Intelligence Dashboard

August 2025 Report

Detailed threat intelligence for 3,788 phishing domains. Registrar abuse, drainer kits, targeted brands, and AI-generated expert assessment.

147,424Total Detected
97,357Taken Down
69.6%Kill Rate
92.5%VT Coverage
39,307Abuse Reports
Overview May 262,798 Apr 2615,640 Mar 2618,819 Feb 2642,100 Jan 268,930 Dec 2511,773 Nov 2512,579 Oct 258,841 Sep 257,307 Aug 253,788 Jul 25700 Jun 254
August 2025 Intelligence Report 441.1%
3,788
2,575
Taken Down
1,082
Still Live
68%
Kill Rate
5047h
Avg Response
4.3
Avg VT Score

August 2025 saw a dramatic surge in phishing domains with 3,788 detected, marking a 441.1% increase from the previous month. The takedown rate stood at 67.6%, indicating significant operational success, though the mean registrar response time remains critically high at 4426.9 hours. Notably, Kraken and Ledger were heavily targeted, reflecting a strategic focus on cryptocurrency brands. The prevalence of the Angel Drainer kit, implicated in 220 cases, underscores a persistent threat of wallet draining for victims.

  • N/A remains the top abuse registrar with 458 domains, followed by NameSilo, LLC with 224 domains.
  • Targeting of Kraken and Ledger suggests a continued emphasis on cryptocurrency rather than traditional banking.
  • The .com TLD was the most weaponized with 1,828 instances, dwarfing other TLDs like .xyz and .life.
  • The Angel Drainer kit led the pack, posing a significant risk of wallet draining for cryptocurrency users.
  • The majority of phishing infrastructure is hosted in the US with 2,524 domains, indicating a concentration that defenders should prioritize.
  • Despite a takedown rate of 67.6%, the mean registrar response time of 4426.9 hours highlights a critical delay in mitigation efforts.
Outlook
Looking ahead to September 2025, defenders should anticipate continued targeting of cryptocurrency brands, with potential shifts towards new TLDs as attackers diversify. Registrars like N/A and NameSilo, LLC require escalated monitoring due to their high abuse concentrations. Vigilance against the Angel Drainer kit remains crucial to protect users from wallet draining threats.

August 2025 Domains (3,788)

Sorted by VirusTotal detections. Click any domain for full security report.

bitcheck-jp.com
11 VTLive
bitcoinhyperv3.my
11 VTTaken DownAngel Drainer
bitget316.com
11 VTTaken Down
bitgetexchange.live
11 VTLive
bitgetu.com
11 VTTaken Down
bitwiseinvest.biz
11 VTTaken Down
blockfoliotrade.com
11 VTTaken Down
browser-matamsk-en.typedream.app
11 VTTaken Down
browser-metam-mask-en.typedream.app
11 VTTaken Down
btc-mixer.to
11 VTLive
btc661.com
11 VTTaken Down
capitalcity-bnk.com
11 VTTaken Down
capitalxtrades.net
11 VTLive
charigelly.xyz
11 VTLive
chatgpt.option.eu.org
11 VTTaken Down
chhaisse.com
11 VTTaken Down
city-premiertrust.com
11 VTTaken Down
coincatch-login-exchange.com
11 VTTaken Down
coinex-vip3.com
11 VTTaken Down
coinexchainltd.com
11 VTTaken Down
connect-uniswap.xyz
11 VT
connectsonlinedapps.weebly.com
11 VTTaken Down
connexhub.firebaseapp.com
11 VTTaken Down
crv-sushi.xyz
11 VTLiveAngel Drainer
curve-finance-defi-us.typedream.app
11 VTTaken Down
decentralizedchain.on.fleek.co
11 VTLiveWallet Connect Abuse
defi--metamack-extn.typedream.app
11 VTTaken Down
defi-chains.com
11 VTTaken Down
digifinances.org
11 VTLive
dydxdefi-trade.typedream.app
11 VTTaken Down
dydxtrade--vissit.typedream.app
11 VTTaken Down
eligibility-linea.app
11 VTLiveAngel Drainer
ellonxia.com
11 VTTaken Down
enacoin-newbridge.com
11 VTLiveIce Phishing
ethmixer.to
11 VTTaken Down
event-crypto.com
11 VTTaken Down
exo-app.com
11 VTTaken Down
exodus-confirm.com
11 VTTaken Down
factorycopytrade.com
11 VTLive
file.firstcoinbase.net
11 VTTaken Down
foresightstrade.com
11 VTLive
foreverplus.net
11 VTTaken Down
group-mega-phone.com
11 VTTaken Down
help-metmask.typedream.app
11 VTTaken Down
investopediafx.com
11 VTTaken Down
jomcas.com
11 VTLive
kucoin18.top
11 VT
land-disc.top
11 VTTaken Down
ledger-defi.web.app
11 VTLive
linea-spin.xyz
11 VTTaken DownAngel Drainer
lockbox-worldslibertyfi.com
11 VTLiveAngel Drainer
ltc-mixer.to
11 VTLive
lumozairdrop.live
11 VTTaken Down
lycory.com
11 VTLive
mainnet-frax.com
11 VTTaken DownAngel Drainer
marketsmindmomentum.com
11 VTTaken Down
memberverifier.github.io
11 VTLive
metamask-logn.typedream.app
11 VTTaken Down
metamaskkslogiinn.webador.com
11 VTTaken Down
microsoftauthenticator.net
11 VTTaken Down
« Prev ... 4 5 6 7 8 9 10 ... Next »

Detection Trends

Monthly domain volume, kill rate, and live threats over time.

Monthly Detected Domains

Kill Rate %

Explore More

Related intelligence pages and data feeds.