shroudxriot[.]pro
shroudxriot.pro — Непроверенный. Тип мошенничества: Crypto Drainer. Сводка доказательств: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); PhishDestroy score 81/100. Регистратор: Registrar of Domain Na….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy assesses shroudxriot.pro as an elevated-risk domain, specifically a crypto drainer designed to steal cryptocurrency wallets. The site masquerades as a legitimate platform, likely a gaming or NFT marketplace, to trick users into connecting their wallets, after which the drainer siphons funds. The domain was created on May 27, 2026, through Registrar of Domain Names REG.RU LLC, and resolves to IP 91.227.114.14. VirusTotal shows 3 out of 95 security vendors flagging it as malicious, and it appears on 1 security blocklist. AlienVault OTX records it in 4 threat intelligence pulses, indicating active tracking by the security community. The SSL certificate is issued by Let's Encrypt (E7), which is common for both legitimate and malicious sites, so it provides no assurance of safety. The page title was "Loading," a generic placeholder that suggests the site was either under construction or intentionally vague to avoid detection. The domain is now offline, but similar sites may appear under different names.
To protect against crypto drainers like shroudxriot.pro, users should never connect their cryptocurrency wallets to untrusted websites. Always verify the URL and look for official announcements from projects. Use a hardware wallet for large holdings and consider using a burner wallet for interactions with new or suspicious dApps. Enable two-factor authentication on all crypto accounts and monitor wallet activity regularly. If you have already connected your wallet to this site, immediately revoke permissions via a token approval checker and transfer funds to a new wallet. Report any losses to local authorities and crypto fraud platforms. Staying vigilant and skeptical of unsolicited links is crucial in the crypto space.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание