defillamae[.]blogspot[.]com
“DeFiLlama — DeFi Analytics, Tools & Resources (2025)”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
Analysis of defillamae.blogspot.com, assessed on July 24, 2026, indicates this domain was actively hosting a crypto drainer phishing operation targeting users of DeFi analytics platforms. The domain, registered through Google (AS15169), resolved to IP 142.250.185.129, hosted on Google LLC infrastructure in the US. The page title, 'DeFiLlama — DeFi Analytics, Tools & Resources (2025)', suggests an attempt to impersonate the legitimate DeFiLlama service, though no direct evidence of the site's visual content or interactive elements is available for confirmation. Infrastructure analysis reveals the domain was hosted on Blogger, with technologies including Java, Python, and OpenGSE, and supported HTTP/3. The SSL certificate was issued by Google Trust Services (WE2), a common feature of legitimate and malicious sites alike.
At the time of assessment, the domain returned an HTTP 404 status, indicating it was no longer serving content, though this does not preclude prior malicious activity. Google Safe Browsing flagged the domain for social engineering, and it appears on at least one security blocklist. Four of 95 security vendors on VirusTotal detected the domain as malicious, though the specific detection logic or signatures are not disclosed. The domain's nameservers were unresponsive (NS_NOT_FOUND), which may indicate takedown efforts or infrastructure instability. PhishDestroy, a security service, had already blocked access to the domain.
While the exact timeline of its operation is unclear, the combination of a DeFi-themed page title, crypto drainer classification, and social engineering flags strongly suggests it was used to deceive users into connecting wallets or divulging credentials, likely leading to unauthorized fund transfers.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
حالة النطاق
يمكن الوصول إليه ← يتعذر الوصول إليه
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
التقنيات
حُدّدت ٥ تقنيات عالية الثقة
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب