# eth-bonus.com — MALICIOUS > Eth-bonus.com is flagged for phishing and social engineering. Do not enter personal data; site is offline but remains high risk. ## Summary PhishDestroy identifies eth-bonus.com as a high-risk phishing domain designed to deceive users, potentially targeting victims with fraudulent Ethereum-related bonuses. The domain was flagged for social engineering tactics and is suspected of attempting to steal sensitive information under false pretenses. Technically, eth-bonus.com was registered through Key-Systems GmbH on February 21, 2026. It resolved to IP address 172.67.219.132 and was reported on seven different security blocklists. Google Safe Browsing classifies it under social engineering threats, and 13 out of 95 security vendors on VirusTotal have flagged it, confirming its malicious intent. Currently, eth-bonus.com has been taken offline, reducing immediate risk. However, users are urged not to visit any related URLs or provide personal information. Continued vigilance and use of reputable security tools are recommended to avoid similar phishing scams. PhishDestroy advises updating security software regularly and reporting suspicious domains promptly. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 0) - Page title: eth-bonus.com ## Domain Intelligence - Registered: 2026-02-21 07:01:08 - Registrar: Key-Systems GmbH - Country: DE - IP: 172.67.219.132 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: ["louis.ns.cloudflare.com", "veronica.ns.cloudflare.com"] - SSL Issuer: Google Trust Services / WE1 ## Detection Status - VirusTotal: 13 vendors flagged Vendors: ["ADMINUSLabs", "ChainPatrol", "alphaMountain.ai", "BitDefender", "CyRadar", "Fortinet", "G-Data", "Google Safebrowsing", "Kaspersky", "Lionic", "Seclookup", "Sophos", "VIPRE"] - Google Safe Browsing: FLAGGED - Blocklists: 7 hits Lists: ["PhishDestroy", "MetaMask", "ScamSniffer", "Polkadot", "SEAL", "Enkrypt", "Codeesura"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019a6603-fb52-7757-8d7a-7a3afe3041aa.png - Cloudflare Radar: https://radar.cloudflare.com/scan/342c26bc-f3b7-418e-a299-b7b4421e299a - PhishDestroy: https://phishdestroy.io/domain/eth-bonus.com/ - LLM endpoint: https://phishdestroy.io/domain/eth-bonus.com/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/eth-bonus.com/ Last updated: 2026-03-19