defi-apemars[.]xyz
defi-apemars.xyz — خطأ في الخادم (HTTP 502). نوع الاحتيال: Crypto Drainer. ملخص الأدلة: VirusTotal 2/91 (Fortinet, SOCRadar); URLQuery 1 alert; Spamhaus DBL_PHISH; PhishDestroy score 61/100. مسجّل النطاق: NiceNIC.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies defi-apemars.xyz as an active crypto drainer campaign designed to steal cryptocurrency assets from unsuspecting users. This domain impersonates legitimate DeFi platforms by mimicking their branding and user interfaces, tricking victims into connecting their wallets and authorizing fraudulent transactions. The attackers leverage social engineering tactics, often through malicious advertisements or cloned project websites, to direct traffic to defi-apemars.xyz where victims are prompted to input wallet credentials or sign malicious transactions. Once connected, the crypto drainer silently transfers funds from the victim's wallet to controlled addresses, resulting in irreversible financial losses. This domain was flagged by PhishDestroy's automated threat detection pipeline with the unique seed identifier f068ea. Technical analysis reveals defi-apemars.xyz resolves to IP address 172.67.172.156 and is hosted on Cloudflare infrastructure using nameservers kyle.ns.cloudflare.com and suzanne.ns.cloudflare.com. The domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on June 07, 2026, making it less than 24 hours old at the time of detection. Despite its recent creation, VirusTotal currently shows 2 out of 95 security engines detecting this threat, indicating that signature-based defenses have not yet caught up with this active campaign. The absence of blocklist entries further highlights the need for proactive threat intelligence monitoring. If you visited defi-apemars.xyz or entered any wallet credentials or transaction approvals, disconnect your wallet immediately and revoke any unauthorized permissions using tools such as revoke.cash. Do not interact with any further prompts from this domain. Report the incident to PhishDestroy using the unique seed f068ea for inclusion in our threat intelligence database. Monitor your wallet for suspicious transactions and consider transferring remaining assets to a new wallet with enhanced security measures. Stay vigilant against similar DeFi impersonation campaigns and always verify URLs through trusted sources before taking any action.
استخبارات أمن الشبكات Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | defi-apemars.xyz |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-05 19:14:20 UTC
تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260624-0B91A2 Recipient: abuse@gen.xyz هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب