bitfrostsetup[.]app
“Bifrost Wallet - Self-custody, multi-chain crypto wallet for DeFi, NFTs and Web3”
Registered just three days ago, this domain is managed by NICENIC INTERNATIONAL GROUP CO., LIMITED and is currently hosted on an IP address of 216.150.1.1. The rapid registration of this domain indicates that it is likely used for short-term phishing campaigns. It is presently blocklisted, which signals prior identification as a potential threat, further corroborating its malicious intent.
Currently active, PhishDestroy has initiated monitoring efforts for bitfrostsetup[.]app and reported it to relevant authorities to mitigate any potential harm. Ongoing surveillance is crucial to prevent any exploitation of unsuspecting individuals seeking cryptocurrency services.
Threat Response Pipeline
Public Blocklist Status
Evidence Capture
Domain Intelligence
elma.ns.cloudflare.com
abuse@vercel.com
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If you have interacted with this domain, entered personal information, or connected a cryptocurrency wallet — take immediate action. Below are resources to help you report the incident and protect yourself.
Report to Your Local Authorities
Select your country to see local cybercrime reporting contacts and complaint templates.
Related Domain Reports
Other Domains on 216.150.1.1
More Domains at NICENIC INTERNATIONAL GROUP CO., LIMITED
About This Report: bitfrostsetup.app
This domain security report for bitfrostsetup.app is maintained by PhishDestroy's automated threat intelligence pipeline. Our system continuously monitors this domain across 95 security vendors on VirusTotal, 1 public blocklists.
The site displays a page titled “Bifrost Wallet - Self-custody, multi-chain crypto wallet for DeFi, NFTs and Web3”.
bitfrostsetup.app has been flagged by 2 security vendors as of February 27, 2026.
If you believe this listing is inaccurate, you can submit an appeal. For more information about our methodology, visit our FAQ page.
Stay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive



URLScan Report