pharos-app[.]eth[.]limo
“Pharos RealFi Access Program”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
PhishDestroy identifies pharos-app.eth.limo as an active fake MetaMask phishing site specifically targeting Ethereum wallet users by spoofing the official login interface. The domain is engineered to harvest private keys, mnemonic phrases, or wallet passwords under the guise of a legitimate authentication portal. Visitors who enter credentials risk immediate loss of funds, as the stolen data grants attackers full control over linked wallets and associated digital assets. This domain was flagged by MetaMask and SEAL, resides on 2 known security blocklists, and currently shows zero detections on VirusTotal out of 95 scanners. Resolving to 3.135.72.151, the site uses a Let’s Encrypt SSL certificate to appear legitimate, though its creation date and registrar remain undisclosed in public records. The absence of widespread detection suggests a recently deployed campaign still in early propagation. If you visited pharos-app.eth.limo, disconnect from the site immediately and do not enter any wallet credentials. Disconnect affected browser sessions, reset network connections, and audit connected wallets using tools like MetaMask’s security check or Etherscan’s token approvals. Consider transferring remaining funds to a newly created wallet with a different seed phrase. Report the incident to your wallet provider and consider revoking any suspicious token approvals via platforms such as Revoke.cash.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
Registration: eth.limo
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain eth.limo behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of pharos-app.eth.limo · checked Apr 30, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب