etner-scan[.]xyz
“ETHer Scan - Ethereum Blockchain Explorer and Analytics Platform”
Riepilogo delle prove
PhishDestroy identifies etner-scan.xyz as an active fake system scanner phishing domain designed to deceive users into downloading malicious software under the guise of a security scan. The domain is currently flagged by 1 of 95 VirusTotal security vendors, indicating limited but present detection coverage. This threat poses an elevated risk to unsuspecting users who may interact with the spoofed scanning interface.
This domain was flagged by 1 of 95 VirusTotal security vendors, registered through NICENIC INTERNATIONAL GROUP CO., LIMITED. It resolves to IP address 188.114.96.3 and holds a valid SSL certificate issued by Google Trust Services. The domain was created on January 27, 2025, making it a recently deployed threat infrastructure. While VirusTotal detection remains low, the presence of a legitimate SSL certificate could enhance user trust and facilitate successful phishing delivery. Additionally, the domain’s short operational history suggests it may not yet be widely recognized by blocklists despite its active status.
Given the active status of etner-scan.xyz and its use of a deceptive system scanner interface, users should treat this domain with extreme caution. It is strongly recommended that individuals and organizations block access to etner-scan.xyz at the network level and update firewall rules to prevent outbound connections. Security teams are advised to scan endpoints for signs of interaction with this domain, particularly any downloads or redirections initiated through fake scan prompts. Users encountering unsolicited system scan alerts should verify the legitimacy of the source through official software channels and avoid entering any credentials or downloading files from suspicious domains.
Istantanea delle prove inviate
- Inviato
- Voci del registro
- 1
- ID del caso
PD-20260327-755B42- Titolo della pagina acquisita
- ETHer Scan - Ethereum Blockchain Explorer and Analytics Platform
- Artefatto PDF
- Prova in PDF
Testo completo delle prove
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 12/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, nomi TLS e date
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of etner-scan.xyz · checked Mar 28, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo