# app-ethgas.com — MALICIOUS > app-ethgas.com engaged in medium-risk phishing activity. Domain now offline. Stay vigilant and avoid suspicious crypto-related sites. ## Summary PhishDestroy identifies app-ethgas.com as a medium-risk generic phishing domain targeting users potentially interested in cryptocurrency transactions. The domain was likely used to deceive victims into divulging sensitive information under the guise of Ethereum gas fee services or related crypto utilities. Such phishing attempts pose risks of financial loss and credential compromise. Technical intelligence reveals app-ethgas.com was created on February 21, 2026, and has been flagged across multiple security blocklists, with 6 out of 95 VirusTotal engines detecting malicious activity. It appears in at least one AlienVault OTX threat pulse, indicating observed malicious behavior in the wild. The domain infrastructure supports typical phishing tactics, including domain spoofing and fraudulent web content delivery designed to mimic legitimate crypto platforms. Currently, app-ethgas.com is offline, mitigating immediate threats from this specific domain. However, users should remain cautious of similar phishing domains and campaigns impersonating crypto services. PhishDestroy recommends continuous monitoring of suspicious domains, user education on phishing risks, and employing robust email and web filtering solutions to prevent exposure to such scams. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 403) - Page title: Just a moment... ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Registrar: NiceNIC International Group Co., Limited - Country: HK - IP: 172.67.175.131 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: ["chris.ns.cloudflare.com", "zoe.ns.cloudflare.com"] - SSL Issuer: Google Trust Services / WE1 ## Detection Status - VirusTotal: 6 vendors flagged Vendors: ["alphaMountain.ai", "CyRadar", "Fortinet", "Gridinsoft", "Seclookup", "SOCRadar"] - Google Safe Browsing: clean - Blocklists: 4 hits Lists: ["PhishDestroy", "MetaMask", "ScamSniffer", "SEAL"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019c5773-5584-7304-b97d-d3453297ca90.png - Cloudflare Radar: https://radar.cloudflare.com/scan/24b5aebb-ba2a-46d1-bc2a-461afa215202 - PhishDestroy: https://phishdestroy.io/domain/app-ethgas.com/ - LLM endpoint: https://phishdestroy.io/domain/app-ethgas.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/app-ethgas.com/ Last updated: 2026-03-19