bonk[.]7drop[.]top
“BONK COIN”
bonk.7drop.top — 未验证. 证据摘要: VirusTotal 6/91 (alphaMountain.ai, Chong Lua Dao, CRDF, Gridinsoft, Seclookup); PhishDestroy score 78/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain bonk.7drop.top was registered on February 21, 2026 and is currently reported as offline. Infrastructure analysis shows the hostname resolves to IP address 172.67.150.53, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The site presented a TLS certificate identified as WE1, indicating the use of a publicly trusted SSL layer. The page title returned by the server is "BONK COIN," suggesting an attempt to lure victims with a cryptocurrency‑related premise.
The domain has been blocked by the PhishDestroy blocklist and appears on one additional security blocklist, providing corroborating evidence of malicious intent. VirusTotal scans recorded four positive detections out of ninety‑three security vendors, reinforcing the classification as a phishing resource. No further public intelligence, such as Safe Browsing or OTX entries, was observed for this host.
The combination of a recent registration date, Cloudflare‑hosted IP, SSL usage, and multiple vendor detections aligns with typical characteristics of generic phishing infrastructure. Defenders should continue to enforce blocklist rules for bonk.7drop.top, monitor related subdomains under the 7drop.top parent zone, and consider adding the IP address 172.67.150.53 to network‑level deny lists. Ongoing vigilance is advised, as the domain could be re‑activated or leveraged in future campaigns targeting cryptocurrency users.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。