ares[.]ai-cryptolist[.]net
Riepilogo delle prove
PhishDestroy identifies the active domain ai-cryptolist.net as a crypto drainer campaign designed to trick users into connecting wallets and silently transfer tokens and NFTs. The site masquerades as a cryptocurrency portfolio tracker, luring victims into approving malicious smart contract interactions that drain balances within seconds. Investigators note this method has escalated in sophistication, often bypassing common browser warnings by using HTTPS and clean-looking landing pages. The domain’s creation date of November 05, 2025 points to a recent, targeted campaign rather than a reused phishing kit. This domain was flagged by PhishDestroy with zero detections on VirusTotal out of 95 engines (12/95), indicating it is not yet blocklisted by most security tools. The domain is registered through Key-Systems GmbH and resolves to IP 104.21.68.219 using a Google Trust Services SSL certificate. This combination of factors—new domain, low detection rate, and trusted SSL issuer—makes it particularly dangerous for unsuspecting users searching for crypto tools. While registration data such as registrant details are not publicly disclosed, the technical profile strongly suggests a coordinated, short-lived operation aimed at high-value crypto users. If you visited ai-cryptolist.net or interacted with it, immediately revoke any approved wallet connections using your wallet’s built-in revoke function or tools like Revoke.cash. Do not interact with any further transactions or pop-ups. Scan your device for malware using reputable antivirus software. Report the domain to PhishDestroy and your wallet provider. Monitor your wallet activity closely for unauthorized transfers. Never approve unsolicited smart contract interactions, even if the site appears legitimate. Maintain vigilance across crypto platforms, as this campaign may expand to related domains.
Data Coverage
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 13/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Registration: ai-cryptolist.net
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain ai-cryptolist.net behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Informazioni forensi
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of ares.ai-cryptolist.net · checked Apr 11, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo