cryptoslam-ir[.]io
Verifica phishing e sicurezza per cryptoslam-ir.io
“Cryptoslam”
cryptoslam-ir.io — Contenuto non disponibile (HTTP 502). Tipo di truffa: Generic Phishing. Riepilogo delle prove: VirusTotal 10/94 (ADMINUSLabs, alphaMountain.ai, CRDF, ESET, Emsisoft); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 80/100. Registrar: Dynadot.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
On July 25, 2026 analysts observed that the domain cryptoslam-ir.io is currently offline but was previously associated with a high‑risk generic phishing campaign. The domain was registered through Dynadot LLC and its creation date is recorded as January 27, 2026. Infrastructure analysis shows the domain resolved to the IP address 104.21.27.163, which belongs to AS13335 operated by Cloudflare, Inc., located in the United States. DNS resolution used the Cloudflare authoritative nameservers ali.ns.cloudflare.com and eric.ns.cloudflare.com, indicating the use of Cloudflare’s CDN and security services.
The web application stack identified Vue.js, HTTP/3, Cloudflare Browser Insights, and HTTP Strict Transport Security (HSTS), suggesting a modern front‑end framework hosted behind Cloudflare’s edge. Reputation data from Gridinsoft assigned a trust score of 0 out of 100, reflecting an extremely low confidence in the domain’s legitimacy. VirusTotal scans reported that ten of ninety‑four security vendors flagged the domain as malicious, reinforcing the suspicion of malicious intent. Independent blocklist monitoring recorded the domain on three security blocklists, and it was explicitly blocked by PhishDestroy, MetaMask, and SEAL, indicating recognition by multiple anti‑phishing and crypto‑wallet security solutions.
The page title returned by the server was "Cryptoslam," but no further content analysis is available. Given the combination of a newly created domain, low trust score, multiple vendor detections, and blocklist inclusion, defenders should continue to monitor any residual DNS or IP activity linked to 104.21.27.163, enforce blocklist rules that already contain cryptoslam‑ir.io, and consider adding the domain to internal deny lists.
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | cryptoslam-ir.io/assets/index.3042f21d.js |
malware | Detects file containing Telegram Bot API |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 5 identified
Progressive JavaScript framework for building user interfaces.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of cryptoslam-ir.io · checked Mar 16, 2026
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo