allocate-degen[.]xyz
allocate-degen.xyz — 内容不可用. 品牌冒充:Genericcloudflare. 证据摘要: VirusTotal 11/93 (ChainPatrol, alphaMountain.ai, CRDF, CyRadar, Forcepoint ThreatSeeker); URLScan malicious verdict; PhishDestroy score 83/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, allocate-degen.xyz, is identified as a crypto drainer phishing site designed to compromise cryptocurrency wallets by tricking users into authorizing malicious transactions. The threat operates by impersonating legitimate decentralized finance (DeFi) platforms, prompting victims to connect their wallets under false pretenses. Once connected, the site executes unauthorized transactions, draining funds from the victim’s wallet without consent. Analysis indicates this is a targeted attack against users engaging with DeFi protocols, leveraging social engineering to exploit trust in blockchain-based interactions.
Infrastructure analysis reveals the domain was registered on February 21, 2026, through the WE1 registrar, a certificate provider commonly associated with short-lived phishing campaigns. The domain resolves to the IP address 172.67.215.216, hosted on AS13335 (Cloudflare, Inc.), a network frequently utilized to obfuscate malicious infrastructure. Detection metrics further substantiate the threat: allocate-degen.xyz is flagged by 11 out of 95 security vendors on VirusTotal and appears on one security blocklist, indicating cross-industry recognition of its malicious nature. The domain’s current offline status suggests either a takedown or a temporary pause in operations, though historical patterns suggest such sites often re-emerge under new domains.
Users who visited allocate-degen.xyz or connected a cryptocurrency wallet to the site should immediately revoke any active wallet authorizations associated with the domain. This can be done through the wallet’s connected applications or permissions settings. Additionally, affected users should transfer remaining funds to a new, secure wallet and monitor transaction histories for unauthorized activity. Given the elevated risk of financial loss, victims are advised to report the incident to relevant blockchain security platforms and consider filing a complaint with their local cybercrime authorities. Proactive measures, such as enabling transaction simulation tools and verifying domain authenticity before wallet connections, are recommended to mitigate future risks.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。