defillamae[.]blogspot[.]com
“DeFiLlama — DeFi Analytics, Tools & Resources (2025)”
Observación almacenada
Contraste de títulos observado
Resumen de las pruebas
Analysis of defillamae.blogspot.com, assessed on July 24, 2026, indicates this domain was actively hosting a crypto drainer phishing operation targeting users of DeFi analytics platforms. The domain, registered through Google (AS15169), resolved to IP 142.250.185.129, hosted on Google LLC infrastructure in the US. The page title, 'DeFiLlama — DeFi Analytics, Tools & Resources (2025)', suggests an attempt to impersonate the legitimate DeFiLlama service, though no direct evidence of the site's visual content or interactive elements is available for confirmation. Infrastructure analysis reveals the domain was hosted on Blogger, with technologies including Java, Python, and OpenGSE, and supported HTTP/3. The SSL certificate was issued by Google Trust Services (WE2), a common feature of legitimate and malicious sites alike.
At the time of assessment, the domain returned an HTTP 404 status, indicating it was no longer serving content, though this does not preclude prior malicious activity. Google Safe Browsing flagged the domain for social engineering, and it appears on at least one security blocklist. Four of 95 security vendors on VirusTotal detected the domain as malicious, though the specific detection logic or signatures are not disclosed. The domain's nameservers were unresponsive (NS_NOT_FOUND), which may indicate takedown efforts or infrastructure instability. PhishDestroy, a security service, had already blocked access to the domain.
While the exact timeline of its operation is unclear, the combination of a DeFi-themed page title, crypto drainer classification, and social engineering flags strongly suggests it was used to deceive users into connecting wallets or divulging credentials, likely leading to unauthorized fund transfers.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Estado del dominio
Accesible → Inaccesible
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Tecnologías
5 tecnologías identificadas con alta confianza
Análisis de VirusTotal
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.