ethereum-sniperbot[.]netlify[.]app
“MEV Sniper Bot for Ethereum and BNB Chain”
ethereum-sniperbot.netlify.app — 内容不可用. 品牌冒充:Ethereum; 诈骗类型:Crypto Drainer. 证据摘要: VirusTotal 1/91 (ChainPatrol); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. 注册商: Netlify.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, ethereum-sniperbot.netlify.app, poses a high-risk threat as a crypto drainer targeting users of the Ethereum blockchain. The site impersonates a legitimate MEV (Maximal Extractable Value) sniper bot service, luring victims with promises of automated trading profits on Ethereum and BNB Chain. Analysis indicates the page is designed to harvest wallet credentials and private keys, enabling attackers to drain cryptocurrency assets from compromised accounts. The use of technical jargon and blockchain-specific terminology increases the likelihood of successful social engineering against cryptocurrency enthusiasts and traders. Infrastructure analysis reveals the domain is hosted on Netlify, a legitimate platform often abused for phishing due to its free hosting services. The site resolves to the IP address 63.176.8.218, and its SSL certificate is issued by DigiCert Inc, which does not mitigate the malicious intent of the content. As of the latest scan, only 1 out of 95 security vendors on VirusTotal have flagged this domain, indicating a low detection rate and suggesting the campaign remains under the radar of many security solutions. The page title, 'MEV Sniper Bot for Ethereum and BNB Chain,' directly aligns with the impersonation of Ethereum-related services, further corroborating the targeted nature of this threat. Users who have visited ethereum-sniperbot.netlify.app or interacted with its content should take immediate action to mitigate potential losses. First, disconnect any wallets linked to the site and revoke all associated smart contract approvals using a blockchain explorer or dedicated revocation tool. Next, transfer remaining assets to a new, secure wallet with a fresh seed phrase. Monitor all connected accounts for unauthorized transactions and enable multi-factor authentication where available. It is also recommended to report the domain to relevant blocklist providers and cryptocurrency security teams to assist in broader threat mitigation efforts. Given the low detection rate, users should remain vigilant for similar phishing attempts targeting blockchain services.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 4 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 置信度 100%JSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%EmailJS is a cloud-based email delivery service that allows you to send emails directly from your client-side JavaScript code without the need for a server-side implementation.
www.emailjs.com 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of ethereum-sniperbot.netlify.app · checked Jun 27, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。