delulu69[.]site
“DELULU69 - Link Situs Online Resmi”
delulu69.site — Контент недоступний. Уособлення бренду: Genericgambling; Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 1 detections (engine total unavailable) (Bfore.Ai PreCrime); URLScan malicious verdict; PhishDestroy score 56/100. Реєстратор: Hostinger.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy analysts have identified delulu69.site as an active generic phishing domain hosting a crypto-asset drainer kit. The site was created on February 23, 2026, and is currently resolving to IPv4 address 188.114.96.3. Domain registration was processed through HOSTINGER operations, UAB, using a Let’s Encrypt SSL certificate to enhance perceived legitimacy. No direct brand impersonation has been observed in available samples, indicating a generic but targeted lure likely circulated via social engineering campaigns. The drainer kit is designed to siphon cryptocurrency from victim wallets upon transaction signing or wallet connection, and may include clipboard hijacking, fake transaction prompts, or malicious smart contract interactions. This represents a high-impact threat to users engaging with decentralized finance platforms or crypto services.
This domain exhibits clear technical indicators of compromise. VirusTotal analysis (as of seed f0721b) returned a detection score of 1 out of 95 security vendors, suggesting low but present recognition in the threat intelligence ecosystem. The domain was registered through HOSTINGER operations, UAB, and resolves to IP 188.114.96.3, a range historically associated with hosting providers in Lithuania. The domain was created on February 23, 2026, indicating a very recent threat actor deployment. Google Safe Browsing (GSB) status is currently unlisted, and no public blocklist count is available beyond the single VT detection. These factors suggest a newly activated campaign with limited but growing exposure in security tools.
The current operational status of delulu69.site is active, with no evidence of takedown or sinkholing at this time. Users should immediately block access to the domain at network and endpoint levels, and avoid any interaction including wallet connections or transaction signing. Security teams are advised to append the IP 188.114.96.3 and domain to firewall rules, DNS blocklists, and EDR exclusions. Remaining risk is elevated due to the domain’s fresh registration, partial detection coverage, and the presence of a functional drainer kit. PhishDestroy continues to monitor this domain for infrastructure shifts or new IOCs. Users interacting with crypto services are urged to verify URLs out-of-band, use hardware wallets, and disable auto-connect features.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 6 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% впевненостіjQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of delulu69.site · checked May 2, 2026
Докази та зовнішні звіти
PD-20260502-83F8CF Recipient: abuse@hostinger.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога