kinextixfinance[.]pages[.]dev
“Kinetix Finance”
已存储的观测记录
观测到的标题差异
证据摘要
PhishDestroy has identified kinextixfinance.pages.dev as a crypto drainer phishing domain targeting users of the Kinetix Finance brand. This domain is currently offline, having been taken down after its malicious activity was detected. The site was designed to impersonate a legitimate decentralized finance platform, tricking visitors into connecting their wallets and ultimately draining their cryptocurrency assets. Its use of a generic .pages.dev subdomain, registered through Cloudflare, Inc., is a common tactic among phishing operations to appear somewhat legitimate while evading initial detection.
Technical analysis reveals that kinextixfinance.pages.dev was created on April 1, 2026, a very recent date consistent with a short-lived phishing campaign. The domain resolves to IP address 188.114.97.3 and uses an SSL certificate issued by Google Trust Services (WE1), which provides a false sense of security to unsuspecting users. On VirusTotal, 2 out of 95 security vendors flagged the domain as malicious, and it appears on 4 security blocklists. While the detection rate is relatively low, the combination of brand impersonation and the specific crypto drainer threat type elevates the risk level to elevated. The domain's registration through Cloudflare and its use of a free hosting service further indicate its disposable nature.
Given that kinextixfinance.pages.dev is now offline, the immediate risk of wallet drainage has been mitigated. However, users who may have already interacted with the site should revoke any permissions granted to suspicious smart contracts and monitor their wallets for unauthorized transactions. PhishDestroy recommends avoiding any unsolicited links claiming to be from Kinetix Finance and always verifying official URLs through trusted sources. If any credentials or wallet connections were provided, change passwords and enable two-factor authentication immediately. Staying vigilant against similar crypto drainer campaigns is essential, as threat actors often reuse infrastructure under new domain names.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控