stakes-bounty[.]com
“$BOUNTY | Highest USDT Rewards”
ملخص الأدلة
The domain stakes-bounty.com was registered on February 21, 2026 through Name SRS AB and is hosted on Cloudflare infrastructure (ASN 13335) with the IP address 104.21.60.158 located in the United States. The authoritative nameservers are sneh.ns.cloudflare.com and tony.ns.cloudflare.com. No TLS certificate is presented for the host, indicating that HTTPS is not configured. The public page title observed is "$BOUNTY | Highest USDT Rewards", and the site claims to impersonate the Metamask wallet, classifying the activity as wallet/seed phishing.
VirusTotal analysis shows that 2 out of 93 scanning engines flag the domain, suggesting malicious behavior, and the domain appears on a single external blocklist that is actively used by PhishDestroy. Gridinsoft assigns a trust score of 0/100, reinforcing the suspicion of malicious intent. AlienVault OTX lists the domain in one threat‑intelligence pulse, providing additional corroboration. The current operational status is reported as offline, which may limit immediate interaction but does not remove the risk associated with the previously observed infrastructure.
Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any re‑activation, and add the IP address 104.21.60.158 to deny‑list rules. Because the site targets Metamask users, security teams should issue alerts to users of that wallet, reminding them to verify URLs and avoid entering seed phrases on unauthenticated sites. At present, no further detail about the page content beyond the title is available, and analysts should treat any future sightings of the domain as high‑confidence phishing indicators.
لقطة الأدلة المرسلة
- أُرسل
- سجلات الدفتر
- 1
- معرّف القضية
PD-20260124-12E521- عنوان الصفحة الملتقطة
- $BOUNTY | Highest USDT Rewards
النص الكامل للدليل
Acceptable Use Policy (AUP): The domain stakes-bounty.com is engaged in phishing activities, which constitute a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The use of this domain for fraudulent purposes directly contravenes your TOS, which reserves the right to suspend or terminate services for such violations.
Applicable Laws (SE):
Brottsbalken (Swedish Penal Code) 9:12: This law addresses fraud and deception, making it illegal to obtain financial gain through misleading representations.
Lagen (2005:59) om elektronisk kommunikation: This law includes provisions against unauthorized access and phishing, which are criminal offenses under Swedish law.
Lag (2018:1174) om åtgärder mot penningtvätt och finansiering av terrorism: This law prohibits activities that facilitate financial crime, including phishing schemes aimed at defrauding individuals.
Regulatory Note: Failure to address this matter promptly may result in regulatory scrutiny and potential liability under applicable laws. Immediate action is required to mitigate risks associated with hosting this phishing domain.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Nextron YARA rules | stakes-bounty.com/main.bbc2594c9c69111e.js |
malware | Unique code from Jetriz, Swid & Jeniva of the Tetris framework |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Casino / Gambling License Verification
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب