ejefinsoria-es[.]net
“Eje Finsoria - Plataforma Oficial | Trading IA 2025”
ejefinsoria-es.net — Контент недоступен. Олицетворение бренда: Base; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 3/94 (alphaMountain.ai, Forcepoint ThreatSeeker, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Регистратор: PDR.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, ejefinsoria-es.net, is identified as a high-risk brand impersonation threat targeting users of the Base cryptocurrency platform. The site presents itself as an official trading platform under the name 'Eje Finsoria - Plataforma Oficial | Trading IA 2025,' designed to deceive users into interacting with fraudulent financial services. Analysis indicates the domain is engineered to harvest credentials, facilitate unauthorized transactions, or deploy crypto-draining malware, posing a direct financial risk to visitors who engage with its content.
Evidence supporting this assessment includes detection by 12 out of 95 security vendors on VirusTotal, with the domain appearing on three distinct security blocklists. Infrastructure analysis reveals the domain was registered on March 08, 2026, through PDR Ltd. d/b/a PublicDomainRegistry.com, an uncommonly future-dated registration that may indicate an attempt to evade temporal reputation checks. The domain resolves to IP address 172.67.223.242, leveraging Cloudflare’s content delivery network and HTTP/3 protocol, alongside HSTS enforcement, to present a veneer of legitimacy while obscuring backend infrastructure.
Users who have visited ejefinsoria-es.net or interacted with its content are advised to take immediate remedial action. Disconnect any active sessions with cryptocurrency wallets, revoke permissions granted to unknown or suspicious dApps, and conduct a full scan of the device using updated security tools. Monitor associated accounts for unauthorized transactions and report any anomalies to the legitimate platform. If credentials were entered, rotate passwords and enable multi-factor authentication on all critical accounts. Given the domain’s high-risk classification and offline status, continued vigilance is recommended for related phishing attempts using similar naming conventions or infrastructure.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
PD-20260308-8B207B Recipient: abuse-contact@publicdomainregistry.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание