points[.]zkverifys[.]xyz
points.zkverifys.xyz — Inhalt nicht verfügbar (HTTP 502). Markenidentität: Sui; Betrugstyp: Brand Impersonation. Zusammenfassung der Beweislage: VirusTotal 2/93 (Forcepoint ThreatSeeker, Gridinsoft); 4 external blocklist matches; PhishDestroy score 82/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain points.zkverifys.xyz was registered on 21 February 2026 and is currently taken offline. Infrastructure analysis shows it resolved to the IP address 104.21.32.1, which belongs to Cloudflare, Inc. (ASN 13335) and is geolocated in the United States. The site presented an SSL certificate identified as “WE1”, but no further certificate details are available. Gridinsoft assigned a trust score of 0 out of 100, indicating an extremely low confidence level for legitimacy. VirusTotal has recorded the domain in its index, with two of ninety‑three security vendors flagging it as malicious.
The domain appears on five independent blocklists – PhishDestroy, ScamSniffer, Polkadot, Enkrypt and Codeesura – confirming that multiple threat‑intelligence feeds consider it hostile. The associated scam type is classified as brand impersonation, specifically targeting the Sui brand. The limited public evidence does not include a captured page title, Safe Browsing verdict, or any observed HTTP response codes because the site is offline. Consequently, the exact phishing payload, credential‑capture mechanisms, or additional infrastructure components remain unknown.
No information is provided about the registrar or any underlying malicious kit. Given the elevated risk rating, defenders should treat points.zkverifys.xyz as a high‑confidence malicious indicator. Immediate actions include adding the domain and its resolved IP address to network‑level deny lists, ensuring that endpoint security solutions ingest the two VirusTotal detections, and confirming that the five blocklists are enforced across web‑filtering appliances. Continuous monitoring of the Cloudflare IP range for re‑use of the address is advisable, as attackers frequently recycle infrastructure.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
Forensische Erkenntnisse
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt