rocket[.]origindefi[.]site
“403 Forbidden”
rocket.origindefi.site — 内容不可用 (HTTP 502). 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 1 detections (engine total unavailable) (SOCRadar); PhishDestroy score 56/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain rocket.origindefi.site is a cryptocurrency phishing site designed to function as a crypto drainer, a type of scam that automatically siphons funds from connected wallets without user consent. No legitimate brand or known drainer kit was identified in association with this domain. As of the latest verification, rocket.origindefi.site has been taken offline, though its previous activity poses a risk to users who may have interacted with it.
Technical analysis of rocket.origindefi.site reveals limited detection by security vendors, with only 1 of 95 VirusTotal vendors flagging the domain. The domain was created on February 21, 2026, and resolved to the IP address 77.37.34.140, hosted by AS47583 Hostinger International Limited in the United Kingdom. It appears on 1 security blocklist, specifically PhishDestroy, and uses an SSL certificate issued by R13. The observed page title was '403 Forbidden,' and Gridinsoft assigned it a trust score of 0 out of 100, consistent with malicious activity.
Users who connected a wallet to rocket.origindefi.site should immediately revoke any token approvals granted to the site using a tool like Etherscan's token approval checker or Revoke.cash. Funds should be transferred to a new, secure wallet to prevent further unauthorized transactions. Victims are advised to report the domain to their wallet provider, relevant blockchain explorers, and platforms such as Google Safe Browsing or PhishTank to aid in broader mitigation efforts.
威胁响应 Pipeline
公共封禁名单状态
取证情报
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。