arbitrage-ai[.]exchange
“AI Arbitrage BOT - Multi-Chain Flash Loan Arbitrage Bot”
arbitrage-ai.exchange — Nicht bestätigt. Betrugstyp: Fake Exchange. Zusammenfassung der Beweislage: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Registrar: Porkbun.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
This domain is flagged as a high-risk phishing site specializing in cryptocurrency credential theft under the guise of an AI-powered flash loan arbitrage bot. Analysis indicates the site employs deceptive interfaces mimicking legitimate multi-chain arbitrage tools to harvest wallet login details, private keys, or seed phrases from unsuspecting users seeking automated trading solutions. Infrastructure analysis reveals the domain arbitrage-ai.exchange was registered on March 18, 2026, through registrar Porkbun LLC. It resolves to IP address 104.21.60.17, hosted behind Cloudflare infrastructure in Canada. The SSL certificate is issued by Let's Encrypt (serial number E7), a common obfuscation tactic in phishing campaigns. Detection metrics show 11 out of 95 security vendors on VirusTotal flag the domain as malicious, while it appears on three distinct security blocklists. Additional protective measures include active blocking by wallet security systems and enterprise phishing detection platforms. Mitigation against this specific threat type requires heightened verification of cryptocurrency tooling domains. Users should cross-reference domain registration dates against project timelines, as legitimate arbitrage bots typically maintain longer operational histories. Wallet holders are advised to enable hardware-based authentication and implement strict transaction signing policies. Network-level protections should include DNS filtering for newly registered domains (NRDs) and Cloudflare-hosted sites with Let's Encrypt certificates created within the last 90 days. Incident responders should monitor for connections to 104.21.60.17 and domains registered via Porkbun LLC exhibiting similar AI/crypto arbitrage themes.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt