1inch[.]io-wallet-apiv2-connect[.]com
The domain 1inch.io-wallet-apiv2-connect.com poses a specific threat as a brand impersonation site, currently offline, and was found to impersonate the well-known brand 1inch. This domain was flagged by 8 of 95 VirusTotal vendors, and its IP address resolves to 188.114.97.3, which was created on February 21, 2026, and appears on 1 security blocklist, indicating a potentially malicious intent behind its creation and usage, with a WE1 SSL certificate issued, raising concerns about its trustworthiness.
PhishDestroy identifies that the domain's technical indicators, such as its IP address and creation date, contribute to its elevated risk level, and with the domain being taken offline, it is clear that the threat it posed has been acknowledged and addressed, yet the fact that it was able to be created and operational, even if briefly, highlights the ongoing need for vigilance in the crypto community, especially when dealing with financial transactions and sensitive information, as domains like 1inch.io-wallet-apiv2-connect.com can cause significant financial loss if not properly identified and avoided.
Given the domain's current status and the information available, PhishDestroy recommends that users exercise extreme caution when encountering similar domains, ensuring to verify the authenticity of websites before engaging with them, especially when it comes to financial transactions or sensitive information, and to always prioritize trusted sources and official channels for any crypto-related activities, thereby minimizing the risk of falling victim to brand impersonation and crypto drainer scams like the one posed by 1inch.io-wallet-apiv2-connect.com, and to stay informed through reputable sources like PhishDestroy to stay ahead of emerging threats.
Threat Response Pipeline
Public Blocklist Status
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive