app[.]compoundfinance[.]xyz
“Compound”
app.compoundfinance.xyz — Контент недоступен. Олицетворение бренда: Compound; Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 1/93 (Gridinsoft); PhishDestroy score 63/100.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of the domain app.compoundfinance.xyz indicates a brand impersonation campaign targeting Compound Finance, a decentralized finance protocol. The domain was registered on February 21, 2026, and resolves to the IP address 163.61.188.2, hosted under AS153568 (NEW DHAKA HARDWARE) in the United States. Infrastructure analysis reveals the domain was flagged by one security vendor on VirusTotal, though the specific detection context remains limited. It appears on a single security blocklist, identified by PhishDestroy, and is classified as a crypto scam in available threat intelligence.
The domain's SSL certificate is issued under the R13 authority, a detail that may assist defenders in tracking related infrastructure. The page title, 'Compound,' aligns with the targeted brand, reinforcing the likelihood of impersonation. As of July 23, 2026, the domain has been taken offline, though historical resolution data and associated artifacts may still pose risks to users who interacted with it prior to deactivation. Defenders should prioritize monitoring for residual indicators, including the IP address 163.61.188.2 and the domain registrar details, which may reveal patterns in attacker infrastructure.
While the domain is no longer active, retrospective analysis of network logs for connections to this IP or domain could identify compromised endpoints or users exposed to the campaign. Given the limited detection coverage, additional scrutiny of related domains or IPs under the same ASN (AS153568) may uncover further malicious activity. No evidence suggests widespread distribution, but the targeted nature of the impersonation warrants heightened vigilance for similar threats.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание