defiluanhem[.]com
Перевірка домену defiluanhem.com на фішинг і безпеку
“DeFi Trading”
defiluanhem.com — Контент недоступний (HTTP 502). Уособлення бренду: Generic; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 3/93 (ChainPatrol, alphaMountain.ai, Seclookup); URLScan malicious verdict; 1 external blocklist match (ScamSniffer); PhishDestroy score 78/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain defiluanhem.com was registered on February 21, 2026 and is currently offline. DNS resolution points to IP address 104.21.80.1, which belongs to Cloudflare, Inc. (AS13335) and is geolocated in the United States. The site presented a page title of "DeFi Trading," indicating an attempt to lure victims into a decentralized finance context. Security telemetry shows the domain is listed on two independent blocklists and has been actively blocked by both PhishDestroy and ScamSniffer.
The Gridinsoft trust score is 0 out of 100, reflecting a complete lack of confidence in the site’s legitimacy. VirusTotal analysis reports three of ninety‑three scanning engines flagging the domain, reinforcing the suspicion of malicious activity. The SSL certificate is identified as WE1, which suggests a weak or improperly issued certificate, a common characteristic of fraudulent infrastructure. The classification as a "crypto drainer" aligns with the observed page title and the broader threat landscape targeting cryptocurrency users.
While the exact phishing kit or the specific DeFi platform being spoofed is not disclosed, the convergence of blocklist presence, low trust scoring, weak TLS, and multiple vendor detections provides strong evidence of a crypto‑related scam. Defenders should continue to block the domain at network perimeter devices, update threat intelligence feeds with the indicator set, and monitor for any re‑registration attempts. Additional investigation of the associated IP range for other malicious hosts is advised, as Cloudflare services are often leveraged to obscure attacker infrastructure.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Криміналістичні дані
Аналіз VirusTotal
Докази та зовнішні звіти
“The PhishDestroy system has identified this domain as a phishing threat, flagged both by our internal parser and reported by users. We also cross-reference with public databases and other antivirus systems.”
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога