phantom-wallet[.]duckdns[.]org
“phantom-wallet.duckdns.org”
phantom-wallet.duckdns.org — No verificado. Suplantación de marca: Across; Tipo de estafa: Wallet/seed Phishing. Resumen de las pruebas: VirusTotal 15/91 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao); URLScan malicious verdict; PhishDestroy score 95/100. Registrador: DuckDNS.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain, phantom-wallet.duckdns.org, is flagged for brand impersonation, a high-risk threat where malicious actors create a website that mimics a legitimate brand to deceive users. The impersonation is designed to trick visitors into revealing sensitive information or performing actions that could compromise their security.
Analysis indicates that phantom-wallet.duckdns.org was created on February 21, 2026, and has been flagged by 14 out of 95 security vendors on VirusTotal. The domain is registered through DuckDNS, a free dynamic DNS service, which can be a red flag as it is often used for temporary or illicit activities. Additionally, the domain resolves to an IP address, 103.186.31.94, located in Indonesia and is associated with AS141892 CV Andhika Pratama Sanggoro. The site also appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL, further confirming its malicious nature.
If a user has visited this site, they should take immediate steps to ensure their security. First, they should change any passwords or sensitive credentials that may have been entered on the site. Users are advised to monitor their accounts for any unauthorized activity and to enable two-factor authentication (2FA) for added security. It is also recommended to run a full system scan using reputable antivirus software to detect and remove any potential malware. Users should report the incident to the legitimate brand, across, and to their respective financial institutions if any financial information was compromised.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Análisis de VirusTotal
Evidencias archivadas
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.