hite-monkey[.]ai-cryptolist[.]net
“Suspected Misleading Website | Cloudflare”
Зведення доказів
Analysis of hite-monkey.ai-cryptolist.net indicates an active high‑risk brand‑impersonation campaign targeting Cloudflare users. The domain was registered on April 11, 2026 via Key-Systems GmbH and resolves to IP 104.21.68.219, which is geolocated to California and is part of Cloudflare’s infrastructure. The site presents the page title "Suspected Misleading Website | Cloudflare" and returns an HTTP 403 status, suggesting the content is deliberately hidden or restricted. TLS is provided by Google Trust Services (WE1) and the site advertises Cloudflare and HTTP/3 technologies, while its authoritative nameservers are melissa.ns.cloudflare.com and miles.ns.cloudflare.com, both belonging to Cloudflare. Security telemetry shows a Gridinsoft trust score of 0/100, 17 of 94 VirusTotal scanners flag the domain, and it appears on a single blocklist. PhishDestroy has already blocked the domain. The campaign is classified as a crypto drainer, implying attempts to lure victims into transferring cryptocurrency to attacker‑controlled wallets, though the exact payload or lure mechanisms have not been publicly observed. Defenders should immediately block DNS resolution and HTTP traffic to this domain, add the IP address 104.21.68.219 to network deny lists, and monitor for any outbound connections to the host. Continuous threat‑intel feeds should be consulted for updates, and any alerts related to Cloudflare brand impersonation should be escalated given the confirmed high‑risk rating.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 13.08.2026
Хронологія виявлення
-
VirusTotal
2 → 17
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Registration: ai-cryptolist.net
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain ai-cryptolist.net behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології
Виявлено 2 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of hite-monkey.ai-cryptolist.net · checked Jun 26, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога