pathofexile[.]site
Phishing- und Sicherheitsprüfung für pathofexile.site
“POE - Path Of exile Chronicles”
pathofexile.site — Inhalt nicht verfügbar (HTTP 502). Markenidentität: Dextools; Betrugstyp: Brand Impersonation. Zusammenfassung der Beweislage: VirusTotal 3/95 (alphaMountain.ai, Bfore.Ai PreCrime, CRDF); PhishDestroy score 66/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain pathofexile.site is identified as a brand impersonation threat specifically targeting DexTools, a platform associated with cryptocurrency trading analytics. This domain is currently offline, though prior activity suggests it was designed to deceive users into believing they were interacting with legitimate DexTools services. The impersonation likely aimed to harvest credentials or distribute malicious payloads under the guise of a trusted brand. Analysis of technical indicators reveals the domain was flagged by 3 of 95 security vendors on VirusTotal, indicating moderate detection but non-negligible risk. Infrastructure details show the domain resolved to the IP address 216.198.79.65 and was registered on February 21, 2026, through an undisclosed registrar. The SSL certificate, identified as R12, is a low-assurance certificate commonly associated with short-lived malicious domains. The domain appears on one security blocklist, and prior intelligence reports from AlienVault OTX include it in three threat pulses, further corroborating its association with malicious campaigns. The page title, 'POE - Path Of exile Chronicles,' attempts to mimic content related to the game Path of Exile, though the underlying infrastructure and targeting align with DexTools impersonation. Current status indicates the domain has been taken offline, reducing immediate risk to end users. However, the infrastructure and registration patterns suggest potential for re-emergence under a similar or altered domain. Organizations and individuals are advised to monitor for domains with comparable naming conventions, particularly those combining gaming terminology with financial or crypto-related services. Network-level blocking of the IP 216.198.79.65 is recommended as a precautionary measure. Users who may have interacted with this domain should verify system integrity, rotate credentials for any associated accounts, and report the incident to relevant security teams for further investigation.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Forensische Erkenntnisse
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt