bit-dex[.]net
“Bit-dex.net”
Сводка доказательств
This domain, bit-dex.net, is identified as a crypto phishing drainer site designed to impersonate legitimate cryptocurrency exchange platforms. Analysis indicates the infrastructure was engineered to harvest user credentials and execute unauthorized transactions, likely targeting wallet private keys or seed phrases. No direct brand affiliation was confirmed, though the site mimics common exchange interfaces to deceive victims. The presence of technologies such as Smartsupp (live chat) and OWL Carousel (dynamic content) suggests an attempt to appear legitimate while facilitating fraudulent interactions. No specific drainer kit was conclusively identified, but the technical stack aligns with known phishing toolkits used in crypto theft operations. Infrastructure analysis reveals multiple high-risk indicators. The domain was registered on April 25, 2025, through Dynadot LLC, a registrar frequently associated with malicious domains. It resolves to the IP address 86.107.77.165, which has been linked to prior phishing campaigns. VirusTotal reports 5 out of 95 security vendors flagging the domain as malicious, while Gridinsoft and Scamadviser assign trust scores of 0/100 and 1/100, respectively. The domain appears on one security blocklist and is currently blocked by PhishDestroy. Google Safe Browsing (GSB) status was not explicitly provided, but the combination of low trust scores and blocklist presence confirms elevated risk. Technologies detected include PHP, LiteSpeed, and Bootstrap, which are commonly exploited in phishing sites for dynamic content delivery and obfuscation. As of the latest assessment, bit-dex.net has been taken offline, likely due to enforcement actions or hosting provider intervention. However, the residual risk remains elevated due to the domain's recent creation and association with known malicious infrastructure. Users who interacted with the site should immediately revoke any connected wallet permissions, transfer assets to a new wallet, and monitor for unauthorized transactions. Organizations are advised to update blocklists with the domain and IP address, while security teams should investigate potential lateral movement within networks that accessed the site. The registrar and hosting provider should be notified to prevent re-activation under similar names or infrastructure.
Data Coverage
Сигналы безопасности
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 10.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
VirusTotal
2 → 3
-
VirusTotal
2 → 5
Сообщения сообщества
Сообщил 1 участник сообщества; впервые замечено 08.08.2025
- Сохранённые сообщения
- 1
- Уникальные URL
- 1
Данные сообщества
3 сообщения сообщества
КатегорияFAKE_PROJECT
Data submited by Intelligence for good
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of bit-dex.net · checked Jun 27, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание