synthetlx[.]at
“synthetlx.at”
Kanıt özeti
This domain is flagged as a high-risk phishing threat targeting users of decentralized finance (DeFi) services. Analysis indicates synthetlx.at impersonates a legitimate cryptocurrency platform, likely Synthetix, to deceive victims into disclosing wallet credentials or transferring digital assets under false pretenses. The domain exhibits characteristics consistent with credential harvesting and financial fraud, including the use of lookalike branding and deceptive transaction prompts commonly associated with DeFi scams. Infrastructure analysis reveals synthetlx.at resolves to the IP address 185.53.179.136, an indicator previously linked to malicious campaigns. The domain appears on four security blocklists and is referenced in two AlienVault OTX threat intelligence pulses, suggesting active tracking by the cybersecurity community. Detection metrics include 11/95 security vendors on VirusTotal flagging the domain as malicious, while Gridinsoft assigns a trust score of 0/100. The domain was registered through Hosting Concepts B.V. (Registrar.eu), a registrar frequently observed in phishing operations. Additional defensive measures include blocking by MetaMask, PhishDestroy, SEAL, and Maltrail, further corroborating its malicious classification. Mitigation requires immediate action from both end users and network administrators. Users who interacted with synthetlx.at should revoke any connected wallet permissions, transfer assets to a new secure wallet, and monitor for unauthorized transactions. Network-level protections should include DNS filtering to block resolution of the domain and its associated IP, as well as implementing indicators of compromise (IOCs) such as 185.53.179.136 in intrusion detection systems. Organizations should educate users on identifying DeFi phishing tactics, particularly the use of lookalike domains and unsolicited transaction requests. Given the domain's current offline status, vigilance is advised for potential reemergence under alternative infrastructure.
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | www.synthetlx.at |
malicious | Sinkholed |
| OpenDNS | www.synthetlx.at |
phishing | Phishing Block |
| Hagezi Threat Feed | www.synthetlx.at |
malicious | Sinkholed |
| DNS4EU | www.synthetlx.at |
malicious | Sinkholed |
| DigiCert UltraDNS | euob.northwavepoint.com |
malicious | Sinkholed |
| Hagezi Threat Feed | yfdnzfa.com |
malicious | Sinkholed |
| DNS4EU | yfdnzfa.com |
malicious | Sinkholed |
| Quad9 DNS | yfdnzfa.com |
malicious | Sinkholed |
| DigiCert UltraDNS | yfdnzfa.com |
malicious | Sinkholed |
| DigiCert UltraDNS | s.cdn-fileserver.com |
malicious | Sinkholed |
| DigiCert UltraDNS | obseu.northwavepoint.com |
malicious | Sinkholed |
| DigiCert UltraDNS | l.cdn-fileserver.com |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
Tespit zaman çizelgesi
-
VirusTotal
9 → 11
-
Alan adı durumu
Erişilebilir → Erişilemiyor
-
Alan adı durumu
Erişilemiyor → Erişilebilir
-
Alan adı durumu
Erişilebilir → Erişilemiyor
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin