public-sapien[.]website
“Sapien — Powering AI with human data”
public-sapien.website — Contenido no disponible (HTTP 502). Suplantación de marca: Across; Tipo de estafa: Wallet/seed Phishing. Resumen de las pruebas: VirusTotal 2/95 (G-Data, Gridinsoft); URLScan malicious verdict; 4 external blocklist matches; PhishDestroy score 82/100.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Analysis as of July 24 2026 indicates that the domain public-sapien.website is currently offline but remains a notable threat actor. The site was registered on February 21 2026 and is hosted on the Cloudflare network (AS13335) with the IP address 104.21.13.9 located in the United States. The SSL certificate presented by the server is identified as WE1, which offers no indication of legitimate ownership. The page title returned from the site, “Sapien — Powering AI with human data,” suggests an attempt to masquerade as a technology‑related service, while the threat profile lists the brand target as “across” and classifies the campaign as wallet/seed phishing, indicating an effort to harvest cryptocurrency wallet credentials or seed phrases.
Reputation scoring from Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on five independent blocklists, including PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura. VirusTotal reports that two of ninety‑five scanning engines have flagged the domain, reinforcing the suspicion that it is malicious. The combination of a low trust score, multiple blocklist listings, and partial VirusTotal detections provides a convergent signal that the infrastructure is being used for credential harvesting. Defenders should block resolution of the IP 104.21.13.9 and enforce DNS deny‑list rules for public‑sapien.website.
Network monitoring should alert on any outbound connections to Cloudflare edge nodes that resolve to this address. Email and web gateway filters ought to incorporate the listed blocklist sources and consider the domain’s recent creation date as an additional heuristic for risk. Because the site is offline, active probing is limited, but continuous re‑resolution checks are recommended to detect possible re‑activation.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Inteligencia forense
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.