motionara[.]live
“Motionara — AI Ad Generator for Brands”
PhishDestroy identifies motionara.live as an active crypto drainer domain engaged in brand impersonation to deceive users into connecting cryptocurrency wallets. The site leverages social engineering tactics, likely mimicking legitimate financial or investment platforms, to trick visitors into authorizing fraudulent transactions that drain assets directly from connected wallets. Technical analysis reveals this domain resolves to IP 188.114.96.3 and currently operates with zero detections across 95 VirusTotal engines, indicating minimal detection by security vendors despite active malicious activity. The domain was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED on March 20, 2026, and utilizes a Let's Encrypt SSL certificate to enhance credibility.
This domain poses a high-risk threat to cryptocurrency users, particularly those engaged in DeFi or NFT transactions. The crypto drainer mechanism typically executes when users interact with smart contracts or sign transactions, unknowingly authorizing malicious code to transfer funds to attacker-controlled wallets. Analysis shows no blocklist entries yet, leaving this domain accessible to a broad audience. The short domain age combined with zero detections suggests a newly deployed operation actively evading detection. Attackers commonly use newly registered domains to bypass reputation-based security filters while rapidly cycling infrastructure to avoid takedowns. The presence of a valid SSL certificate further legitimizes the scam, tricking users into believing the platform is secure and professional.
If you visited motionara.live, immediately disconnect any connected wallets, revoke any unauthorized permissions through blockchain explorers or wallet interfaces, and transfer remaining assets to a clean wallet. Review transaction history for suspicious transfers and report the domain to your antivirus provider and relevant blockchain security platforms. Avoid entering any credentials or connecting wallets to unknown domains in the future. Consider using hardware wallets for enhanced security and enable transaction simulation features if available. Monitor your accounts for unusual activity and report any fraudulent transactions to the appropriate authorities. This domain remains active and under investigation, so exercise extreme caution to prevent financial loss.
Запис надісланого повідомлення
Знімок надісланих доказів
- Надіслано
- Записи журналу
- 1
- ID справи
PD-20260325-0767F9- Заголовок збереженої сторінки
- Motionara — AI Ad Generator for Brands & Ecommerce
- PDF-файл
- PDF із доказами
Правова підстава
Повний текст доказів
Policy Violations: “Services may be used only for lawful purposes… fraud, abuse and illegal activity prohibited. Violations may result in immediate suspension.” + dedicated abuse handling and takedown
Applicable Laws: Crimes Ordinance Cap.200 (Fraud), Theft Ordinance Cap.210 §16A (fraud by deception), Personal Data (Privacy) Ordinance Cap.486
Розвіддані з мережевої безпеки Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | cloudflare-dns.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Перевірка за блок-листами
Джерел: 10 · синхронізовано 09.08.2026
Хронологія виявлення
Збережені спостереження у хронологічному порядку.
-
Доступність
Доступність: уперше зафіксовано як dns_inactive
f93a11f87e4d -
Доступність
Доступність: dns_inactive → unknown
a6e6e1874378 -
Доступність
Доступність: unknown → dns_inactive
40b3c1eb2aef -
Доступність
Доступність: dns_inactive → unknown
6e146de81fdc -
Доступність
Доступність: unknown → dns_inactive
6dfe9145995c -
Доступність
Доступність: dns_inactive → unknown
ff9f0607c1e9 -
Доступність
Доступність: unknown → held
2ed6cf395853 -
Доступність
Доступність: held → unknown
beb871e1107d -
Доступність
Доступність: unknown → dns_inactive
d0b7046e8c2f -
Доступність
Доступність: dns_inactive → held
acb5f9532c73
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криміналістичні дані
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of motionara.live · checked Mar 25, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога