vwa-vanguard[.]xyz
“$VWA Airdrop”
vwa-vanguard.xyz — Contenido no disponible (HTTP 502). Tipo de estafa: Crypto Scam. Resumen de las pruebas: VirusTotal 12/93 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); 1 external blocklist match (ScamSniffer); PhishDestroy score 86/100.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain, vwa-vanguard.xyz, is identified as a fraudulent airdrop scam designed to deceive cryptocurrency users. The site impersonates a legitimate token distribution event for $VWA, luring victims with promises of free assets. Once engaged, users are typically directed to connect their wallets to malicious smart contracts, which can result in unauthorized transactions, asset drainage, or complete loss of funds. The threat leverages social engineering tactics, exploiting the popularity of airdrops in the crypto space to gain trust and bypass initial skepticism. Analysis indicates this domain was registered on February 21, 2026, and is hosted on infrastructure associated with Cloudflare (IP: 104.21.40.206, AS13335). The site has been flagged by 12 out of 95 security vendors on VirusTotal, confirming its malicious nature. Additionally, it appears on two security blocklists and is explicitly blocked by multiple threat intelligence platforms. The SSL certificate, issued under the identifier WE1, does not correspond to any legitimate certificate authority, further indicating its fraudulent purpose. The page title, $VWA Airdrop, directly mimics promotional language used in genuine token distributions, enhancing its deceptive appearance. If you visited vwa-vanguard.xyz or interacted with its content, immediate action is required to mitigate potential risks. First, disconnect any wallets or accounts linked to the site and revoke any suspicious smart contract approvals using a blockchain explorer or wallet management tool. Monitor your wallet for unauthorized transactions and consider transferring assets to a new, secure wallet if tampering is suspected. Report the domain to relevant cybersecurity platforms to aid in broader threat mitigation efforts. Users should also enable multi-factor authentication on all crypto-related accounts and verify the legitimacy of any future airdrop promotions through official project channels before engagement.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Inteligencia forense
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.