patriotearners[.]com
“patriotearners.com | Home Page”
patriotearners.com — Неперевірений. Уособлення бренду: Ethereum; Тип шахрайства: Gaming Scam. Зведення доказів: VirusTotal 4/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 65/100. Реєстратор: Tucows.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain patriotearners.com is an active phishing site engaged in brand impersonation targeting Ethereum users. It presents itself as a gaming-related platform to deceive victims into interacting with fraudulent content, though no crypto drainer kit was identified. As of the latest verification, patriotearners.com has been taken offline, but its prior activity poses an elevated risk to individuals who may have engaged with it.
Technical indicators confirm the domain's malicious intent. patriotearners.com was flagged by 1 of 95 VirusTotal security vendors, including SOCRadar, and appears on 1 security blocklist (PhishDestroy). The domain was registered through Tucows Domains Inc. on November 26, 2024, and resolves to the IP address 74.50.74.206, hosted by Interserver, Inc. in the United States. No SSL certificate was observed, and the page title displayed was 'patriotearners.com | Home Page'. AlienVault OTX recorded the domain in 1 threat intelligence pulse, further corroborating its association with phishing activity.
Individuals who interacted with patriotearners.com should take immediate steps to secure their assets and accounts. Ethereum users should revoke any token approvals granted to unknown contracts and consider transferring funds to a new wallet. If login credentials were entered, change passwords immediately and enable two-factor authentication (2FA) on all affected accounts. Monitor accounts for unauthorized transactions or suspicious activity. Report the domain to relevant platforms, such as Google Safe Browsing, PhishTank, or local cybersecurity authorities, to aid in broader mitigation efforts.
Сигнали безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
“The PhishDestroy system has identified this domain as a phishing threat, flagged both by our internal parser and reported by users. We also cross-reference with public databases and other antivirus systems.”
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога