v2eigelnayer[.]net
“EigenLayer: Restake ETH to Secure Actively Validated Services & Earn Rewards”
Зведення доказів
Analysis confirms that v2eigelnayer.net is an active brand impersonation site targeting users of the EigenLayer protocol. The domain was registered on February 21, 2026 and resolves to the Cloudflare‑managed address 172.67.129.233, an IP located in the United States under ASN 13335. The registrar is listed as NiceNIC International Group Co., Limited. The site serves content over HTTPS using a Google Trust Services certificate issued to WE1, and the HTTP response code is 200, indicating a reachable web server.
Page metadata reveals the title "EigenLayer: Restake ETH to Secure Actively Validated Services & Earn Rewards," which aligns with the claimed investment scam narrative. Technical fingerprints show the presence of Google Maps, Bootstrap, OWL Carousel, jQuery, cdnjs, Cloudflare Browser Insights, and HTTP/3, all delivered via Cloudflare's edge network; the authoritative nameservers are hunts.ns.cloudflare.com and mona.ns.cloudflare.com. Detection data shows two of ninety‑three VirusTotal scanners flag the domain, and it appears on three external blocklists. It is already listed by PhishDestroy, MetaMask, and SEAL as a malicious resource, and Gridinsoft assigns a trust score of 0 out of 100.
While the exact phishing page layout has not been examined, the combination of a brand‑specific title, recent registration, Cloudflare hosting, and low trust scores indicates a high‑risk credential‑harvesting operation. Defenders should block the domain at perimeter firewalls, add it to DNS sinkhole lists, and monitor for any outbound connections to the associated IP. Endpoint protection solutions should be updated to include the domain in threat feeds, and users of EigenLayer should be warned that any unsolicited requests to restake ETH on this site are fraudulent.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
8 зовнішніх джерел під наглядом Збігів немає
Збережені докази результату
Результат і атрибуція блокування
- Результат
live_content- Доступність
content_live- Причина
content_served- Упевненість
- 90%
- Перше спостереження
- Останнє спостереження
SHA-256 доказу 988d110d854d
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
Доступність
Перше збережене значення: Невідомо
993d00c35140 -
Доступність
Невідомо → Активний вміст
5175a8d869d7 -
Доступність
Активний вміст → Невідомо
88ae728b35bb -
Доступність
Невідомо → Активний вміст
d40ecf9e0b7c -
Доступність
Активний вміст → Невідомо
7cebcfd4071c -
Доступність
Невідомо → Активний вміст
282ac1148024 -
Доступність
Активний вміст → Невідомо
ca255b61650a -
Доступність
Невідомо → Активний вміст
f2cd69c87226 -
Доступність
Активний вміст → Невідомо
d8f7d37d7f95
Показати всі (1)
-
Доступність
Невідомо → Активний вміст
988d110d854d
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 13.02.2026
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Збережений знімок
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of v2eigelnayer.net · checked Mar 2, 2026
Схожі домени
Збережено 51 схожий домен
Показати всі (39)
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога