renbridge-v1[.]com
ملخص الأدلة
This domain, renbridge-v1.com, operates as a crypto drainer phishing site designed to compromise digital wallets by tricking users into authorizing malicious smart contracts. Once connected, the site executes unauthorized transactions, draining cryptocurrency assets from victims' wallets without their consent. The threat primarily targets users of decentralized finance (DeFi) platforms, leveraging social engineering tactics to mimic legitimate bridging services. Analysis indicates the domain was registered on February 21, 2026, and is hosted on infrastructure belonging to AS16509 (Amazon.com, Inc.) at IP address 15.197.240.20. The domain is flagged by 11 out of 95 security vendors on VirusTotal, with detections spanning multiple categories including phishing and fraud. It appears on five independent security blocklists, including those maintained by wallet security providers. The SSL certificate is issued by Go Daddy Secure Certificate Authority - G2, a common choice for both legitimate and malicious domains due to its widespread recognition. Users who interacted with renbridge-v1.com should immediately revoke any connected wallet permissions via their wallet interface or a trusted revoke tool. Monitor transaction histories for unauthorized transfers and report any suspicious activity to the relevant blockchain explorer or wallet provider. If funds were lost, file a report with local cybercrime authorities and provide transaction hashes as evidence. Avoid reusing passwords or seed phrases associated with compromised wallets, and enable multi-factor authentication on all critical accounts.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
٦ مصادر خارجية مراقبة لا تطابق
بلاغات المجتمع
أبلغ عنه عضو واحد في المجتمع؛ شوهد أول مرة في 07/08/2025
- البلاغات المحفوظة
- 1
- عناوين URL الفريدة المبلغ عنها
- 1
معلومات المجتمع
بلاغ مجتمعي واحد
الفئةIMPERSONATION
I went to see if i could bridge some btc into wbtc using renbridge but it was the wrong website https://renbridge-v1.com/ i straight git to accept 2 transactions, i shouldn't have and then realise I was giving my wbtc
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب