akita-migrate[.]xyz
“akita-migrate.xyz | 525: SSL handshake failed”
akita-migrate.xyz — Контент недоступний (HTTP 502). Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 3/94 (alphaMountain.ai, Forcepoint ThreatSeeker, SOCRadar); Spamhaus DBL_PHISH; PhishDestroy score 65/100. Реєстратор: NameSilo.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
akita-migrate.xyz is a recently registered domain actively distributing a cryptocurrency drainer under the guise of a migration tool. Security researchers have flagged this domain due to its malicious infrastructure, which is designed to deceive users into connecting their wallets under false pretenses. The threat actor behind this campaign leverages domain obfuscation and trusted SSL certificates from Let's Encrypt to appear legitimate, while the IP resolution (188.114.97.3) has been linked to multiple fraudulent endpoints. Failure to detect early could result in unauthorized cryptocurrency transfers or credential theft.
This domain was flagged by PhishDestroy’s automated systems, with intelligence sourced from VirusTotal scans showing 3/95 detection engines flagging the domain at the time of analysis. The domain was registered through NameSilo, LLC on April 03, 2026, indicating a very recent deployment likely targeting unsuspecting users. Despite the lack of immediate detection, the active status and suspicious indicators (such as the use of a crypto drainer tactic) warrant extreme caution. The domain’s short lifespan and association with known fraudulent IPs further elevate its risk profile.
If you or someone you know has interacted with akita-migrate.xyz, particularly by connecting a cryptocurrency wallet or entering sensitive credentials, disconnect the wallet immediately and revoke any unauthorized permissions. Do not interact with this domain further, and avoid clicking any links or downloading files associated with it. Use PhishDestroy’s real-time verification tool to check the legitimacy of similar domains, and report this activity to your security team or relevant blockchain monitoring services. Always verify URLs manually and cross-reference with official sources before taking any action involving cryptocurrency transactions.
Розвіддані з мережевої безпеки Registrar context
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
PD-20260404-D3F491 Recipient: abuse@namesilo.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога