bonkbot[.]space
“Website bonkbot.space is ready. The content is to be added”
bonkbot.space — Контент недоступний (HTTP 502). Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 5/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft, LevelBlue, SOCRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 90/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, bonkbot.space, is actively facilitating crypto drainer phishing operations targeting cryptocurrency users. Analysis indicates the infrastructure is designed to mimic legitimate wallet or token management interfaces, tricking victims into connecting wallets or entering private keys. The domain currently hosts no substantive content, as evidenced by the placeholder page title 'Website bonkbot.space is ready. The content is to be added,' suggesting it is in a pre-deployment or staging phase for malicious activity. Crypto drainers are particularly insidious as they silently siphon funds from connected wallets without user consent, often exploiting smart contract interactions or social engineering tactics to bypass security measures. Infrastructure analysis reveals multiple high-confidence threat indicators. The domain is registered through GoDaddy.com, LLC, a common registrar for both legitimate and malicious domains, and resolves to the IP address 186.2.175.35. It is flagged by 5 out of 95 security vendors on VirusTotal, a notable detection rate for a domain with no visible content. Additionally, bonkbot.space appears on three independent security blocklists, including high-profile industry trackers. The SSL certificate, issued by Let's Encrypt (R13), provides basic encryption but does not mitigate the underlying phishing threat. The domain's creation date and lack of substantive content further suggest it is part of a rapidly deployed phishing campaign. Users who have visited bonkbot.space or interacted with its content should take immediate remedial action. Disconnect any cryptocurrency wallets linked to the domain and revoke all associated smart contract approvals using a trusted blockchain explorer. Scan the device for malware, as phishing sites may deploy secondary payloads. Monitor wallet transactions for unauthorized activity and consider transferring assets to a new wallet if suspicious interactions are detected. Report the domain to relevant security communities to aid in broader threat mitigation efforts. Given the high-risk nature of crypto drainers, affected users should assume compromise and act accordingly to prevent financial loss.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 1 identified
DDoS-Guard is a Russian Internet infrastructure company which provides DDoS protection, content delivery network services, and web hosting services.
ddos-guard.net 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of bonkbot.space · checked Jun 9, 2026
Докази та зовнішні звіти
PD-20260609-2079CC Recipient: abuse@iqweb.io Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога