treasurypools-ethena[.]fi
“$ENA”
treasurypools-ethena.fi — 未验证. 诈骗类型:Fake Airdrop. 证据摘要: VirusTotal 3/95 (alphaMountain.ai, Fortinet, Seclookup); URLQuery 2 alerts; PhishDestroy score 65/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain treasurypools-ethena.fi is an active generic phishing site posing as a staking scam, targeting cryptocurrency users with fraudulent investment opportunities. It does not impersonate a specific brand or use a known drainer kit but operates as a standalone phishing page. As of the latest verification, the site remains active, presenting an elevated risk to visitors who may be tricked into disclosing sensitive information or transferring funds.
Technical indicators confirm the suspicious nature of treasurypools-ethena.fi. The domain is flagged by 3 of 95 VirusTotal security vendors, including alphaMountain.ai, Fortinet, and Seclookup. It appears on 1 security blocklist (PhishDestroy) and resolves to the IP address 172.67.161.153, hosted on Cloudflare’s infrastructure (AS13335) in the US. The SSL certificate is issued by Google Trust Services (WE1), and the domain was created on February 21, 2026. The observed page title is '$ENA', and the site returns an HTTP 403 status. Gridinsoft assigns it a trust score of 0/100, and technologies detected include Cloudflare and HTTP/3.
Users who interacted with treasurypools-ethena.fi should immediately revoke any token approvals granted to unknown contracts and transfer remaining funds to a new wallet. If credentials were entered, change passwords for all associated accounts and enable two-factor authentication (2FA). Report the domain to platforms like Google Safe Browsing, PhishTank, or local cybersecurity authorities to aid in takedown efforts. Monitor financial accounts for unauthorized transactions and consider using browser extensions or security tools to block known phishing domains.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | treasurypools-ethena.fi |
malicious | Sinkholed |
| Hagezi Threat Feed | treasurypools-ethena.fi |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。