eomf[.]deribitltd[.]cc
“Deribit”
Зведення доказів
This domain, eomf.deribitltd.cc, is a confirmed brand impersonation phishing site targeting the cryptocurrency exchange brand Deribit, as indicated by the page title 'Deribit' and the scam classification in threat intelligence sources. Registered on December 10, 2025, through Gname.com Pte. Ltd., the domain resolved to IP 188.239.22.205, hosted on AS136907 (HUAWEI CLOUDS) in Singapore. Nameservers a4.share-dns.com and b4.share-dns.net were in use, a configuration often observed in low-reputation or bulletproof hosting environments. Analysis reveals the domain was flagged by 14 of 93 security vendors on VirusTotal, while Google Safe Browsing classified it as social engineering.
The domain appears on at least one security blocklist and was assigned a trust score of 0/100 by Gridinsoft. No SSL certificate was detected, increasing the likelihood of interception or user distrust. The domain was blocked by PhishDestroy and is currently offline as of the report date, though historical resolution and detection data remain relevant for retrospective threat hunting. Defenders should treat this domain as high-risk for Deribit brand impersonation, particularly in cryptocurrency-related phishing campaigns.
The infrastructure—hosting provider, nameservers, and lack of encryption—aligns with patterns used in credential harvesting or fraudulent transaction schemes. Network defenders are advised to block the domain, IP, and associated nameservers at perimeter controls. Security teams should review logs for connections to 188.239.22.205 or DNS queries for eomf.deribitltd.cc, particularly from endpoints involved in cryptocurrency transactions or financial operations. No further page content analysis is available; additional context may emerge from endpoint or proxy logs.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
VirusTotal
8 → 14
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога