shardstrade[.]io
Phishing- und Sicherheitsprüfung für shardstrade.io
“NFT Trading Platform”
shardstrade.io — Inhalt nicht verfügbar (HTTP 502). Markenidentität: Ethereum; Betrugstyp: Wallet/seed Phishing. Zusammenfassung der Beweislage: VirusTotal 1/93 (SOCRadar); PhishDestroy score 55/100. Registrar: PDR.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
This domain, shardstrade.io, is identified as a brand impersonation threat targeting Ethereum, a prominent blockchain platform. Analysis indicates the site masqueraded as an NFT trading platform, likely designed to deceive users into connecting wallets or disclosing sensitive credentials under false pretenses. The domain exhibits characteristics consistent with crypto-focused fraud, including the use of blockchain-related terminology and visual elements mimicking legitimate Ethereum services. No direct evidence of a crypto drainer kit was observed, but the infrastructure aligns with known impersonation tactics used to facilitate unauthorized transactions or credential harvesting. Infrastructure analysis reveals the domain was registered through PDR Ltd. d/b/a PublicDomainRegistry.com on November 21, 2025, and resolved to the IP address 172.67.130.57. Detection metrics show minimal initial coverage, with only 1 of 95 security vendors flagging the domain on VirusTotal. Despite this, the domain appears on three security blocklists and is actively blocked by wallet protection mechanisms and anti-phishing frameworks. The Gridinsoft trust score of 0/100 further corroborates its malicious classification. The page title, 'NFT Trading Platform,' reinforces the impersonation theme, directly targeting users engaged in digital asset trading. As of the latest assessment, shardstrade.io has been taken offline, reducing immediate exposure to potential victims. However, the domain's recent registration and prior hosting on a content delivery network suggest the infrastructure may be repurposed or reactivated. Users who interacted with the domain are advised to audit connected wallets for unauthorized transactions and revoke any suspicious permissions. Organizations should monitor for similar domains registered under the same registrar or resolving to the identified IP, as these may indicate ongoing or evolving campaigns. The elevated risk level persists due to the domain's association with high-value targets and the potential for rapid redeployment.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
VirusTotal-Analyse
Nachweise und externe Berichte
PD-20260103-B607B8 Recipient: abuse@publicdomainregistry.com Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt