restake-etherfi[.]xyz
“Etherfi”
restake-etherfi.xyz — सामग्री अनुपलब्ध (HTTP 502). ब्रांड प्रतिरूपण: Etherfi; घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 1/94 (alphaMountain.ai); URLScan malicious verdict; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 74/100. रजिस्ट्रार: PDR.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
The domain restake-etherfi.xyz is a cryptocurrency phishing site designed to function as a crypto drainer, a type of scam that automatically siphons funds from connected wallets. It does not impersonate a specific legitimate brand but uses the name 'Etherfi' in its page title to deceive users. As of the latest verification, restake-etherfi.xyz has been taken offline, though it previously posed an elevated risk to cryptocurrency holders.
Technical analysis shows that restake-etherfi.xyz was flagged by 1 of 95 VirusTotal security vendors, including alphaMountain.ai. It appears on 4 security blocklists, including PhishDestroy, MetaMask, and ScamSniffer. The domain was registered through PDR Ltd. d/b/a PublicDomainRegistry.com on March 22, 2026, and resolved to the IP address 172.67.177.156, hosted by Cloudflare in Canada. No SSL certificate was detected, and the site used technologies such as PHP and HTTP/3. The page title observed was 'Etherfi', and the domain was blocked by PhishDestroy, MetaMask, ScamSniffer, and SEAL.
Users who interacted with restake-etherfi.xyz should immediately revoke any token approvals granted to the site and transfer remaining funds to a new, secure wallet. To mitigate further risk, enable transaction simulation tools to preview wallet interactions before approval. Report the domain to relevant platforms, such as MetaMask’s phishing detection or ScamSniffer’s reporting system, to assist in broader threat mitigation efforts.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
ICANN OVERSIGHT
प्रत्यायन और आरएए संदर्भ
प्रत्यायन और आरएए संदर्भ
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
फॉरेंसिक इंटेलिजेंस
Casino / Gambling License Verification
तकनीकें · 3 identified
Server-side scripting language designed for web development.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
PD-20260320-813A2C Recipient: abuse@publicdomainregistry.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।