app[.]cowsvap[.]finance
“403 Forbidden”
ملخص الأدلة
This domain, app.cowsvap.finance, is actively involved in a cryptocurrency wallet drainer campaign. Such threats are designed to trick users into connecting their digital wallets to malicious smart contracts, enabling attackers to siphon funds without authorization. Victims typically encounter these sites through deceptive advertisements, social media links, or compromised platforms, often believing they are interacting with legitimate decentralized finance (DeFi) services. The consequences of engagement can include immediate and irreversible loss of cryptocurrency assets. Analysis indicates that the domain currently exhibits low detection rates but shows signs of malicious infrastructure. As of the latest scan, app.cowsvap.finance has 0 detections out of 95 security engines on VirusTotal, suggesting it may be newly deployed or employing evasion techniques. The domain resolves to the IP address 82.25.81.58, hosted under AS47583 by Hostinger International Limited, a provider frequently observed in phishing and fraudulent operations. The site returns a 403 Forbidden HTTP status, which may indicate a staging environment, backend misconfiguration, or an attempt to evade automated analysis tools. Despite the lack of an SSL certificate, the domain has been flagged by one security blocklist, further supporting suspicions of malicious intent. Users who have visited app.cowsvap.finance or interacted with its content should take immediate action to mitigate potential risks. Disconnect any linked wallets from the site and revoke all smart contract approvals using a trusted blockchain explorer or wallet management tool. Scan the device used for access with updated security software to detect any installed malware or browser-based threats. Monitor connected cryptocurrency wallets for unauthorized transactions and consider transferring assets to a new, secure wallet if compromise is suspected. Report the domain to relevant security communities and financial platforms to aid in broader protective measures.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
-
Cloudflare Radar
تم حفظ فحص Cloudflare Radar · فتح الفحص
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب