6npool9s[.]top
“Defi”
6npool9s.top — Контент недоступен. Олицетворение бренда: Binance; Тип мошенничества: Wallet/seed Phishing. Сводка доказательств: VirusTotal 11/95 (alphaMountain.ai, BitDefender, CyRadar, Forcepoint ThreatSeeker, Fortinet); URLQuery 100 det.; Google Safe Browsing flagged; 1 external blocklist match (ScamSniffer); PhishDestroy score 95/100. Регистратор: Domain International S….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, 6npool9s.top, presents a page titled "Defi" and impersonates the brand Binance. The identified scam types are wallet_connect_phish and qr_hijack, indicating the site is designed to deceive users into connecting their cryptocurrency wallets or scanning malicious QR codes, which would enable attackers to drain funds.
Technical evidence shows the site was flagged by 11 out of 95 VirusTotal vendors. Google Safe Browsing lists it as FLAGGED for SOCIAL_ENGINEERING. It is blocked by alphaMountain.ai, BitDefender, CyRadar, Forcepoint ThreatSeeker, and Fortinet, and appears on two blocklists. The domain was created on 2025-07-14, hosted on IP 2606:4700:3033::6815:f06 (US) under AS13335 Cloudflare, Inc., and registered through Domain International Services Limited. It uses nameservers fattouche.ns.cloudflare.com and kay.ns.cloudflare.com with no SSL certificate.
The site is currently DOWN/OFFLINE. GridInSoft rates its trust at 0/100, and the DOM risk score is 20, indicating a high-risk threat despite being offline.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание