vwa-vanguard[.]xyz
“$VWA Airdrop”
vwa-vanguard.xyz — Inhalt nicht verfügbar (HTTP 502). Betrugstyp: Crypto Scam. Zusammenfassung der Beweislage: VirusTotal 12/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); 1 external blocklist match (ScamSniffer); PhishDestroy score 86/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
This domain, vwa-vanguard.xyz, is identified as a fraudulent airdrop scam designed to deceive cryptocurrency users. The site impersonates a legitimate token distribution event for $VWA, luring victims with promises of free assets. Once engaged, users are typically directed to connect their wallets to malicious smart contracts, which can result in unauthorized transactions, asset drainage, or complete loss of funds. The threat leverages social engineering tactics, exploiting the popularity of airdrops in the crypto space to gain trust and bypass initial skepticism. Analysis indicates this domain was registered on February 21, 2026, and is hosted on infrastructure associated with Cloudflare (IP: 104.21.40.206, AS13335). The site has been flagged by 12 out of 95 security vendors on VirusTotal, confirming its malicious nature. Additionally, it appears on two security blocklists and is explicitly blocked by multiple threat intelligence platforms. The SSL certificate, issued under the identifier WE1, does not correspond to any legitimate certificate authority, further indicating its fraudulent purpose. The page title, $VWA Airdrop, directly mimics promotional language used in genuine token distributions, enhancing its deceptive appearance. If you visited vwa-vanguard.xyz or interacted with its content, immediate action is required to mitigate potential risks. First, disconnect any wallets or accounts linked to the site and revoke any suspicious smart contract approvals using a blockchain explorer or wallet management tool. Monitor your wallet for unauthorized transactions and consider transferring assets to a new, secure wallet if tampering is suspected. Report the domain to relevant cybersecurity platforms to aid in broader threat mitigation efforts. Users should also enable multi-factor authentication on all crypto-related accounts and verify the legitimacy of any future airdrop promotions through official project channels before engagement.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Forensische Erkenntnisse
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt