wlfi-bitflyer[.]com
“WLFI Wallet - Secure Your Cryptocurrencies with WLFI.co”
Observación almacenada
Contraste de títulos observado
Resumen de las pruebas
This domain, wlfi-bitflyer.com, is flagged as a brand impersonation threat targeting Arbitrum, a layer-2 blockchain platform. Analysis indicates the site mimics a cryptocurrency wallet service, presenting itself as 'WLFI Wallet - Secure Your Cryptocurrencies with WLFI.co.' The infrastructure appears designed to deceive users into disclosing sensitive credentials or transferring assets to attacker-controlled addresses, consistent with cryptocurrency drainer kit tactics. No specific drainer kit family was identified, but the impersonation of a trusted blockchain brand aligns with known phishing methodologies in the cryptocurrency sector.
Technical indicators reveal multiple red flags. The domain was registered on December 17, 2025, through Gname.com Pte. Ltd., an uncommon registrar for legitimate cryptocurrency services. It resolves to IP address 104.21.21.231, a Cloudflare-hosted endpoint, which is frequently leveraged by threat actors to obfuscate origin servers. VirusTotal reports 7 out of 95 security vendors flagging the domain as malicious. The domain appears on one security blocklist, and its SSL certificate is issued by Google Trust Services, a common but not inherently trustworthy provider. Technologies detected include Vue.js, Cloudflare, and HTTP/3, which are not unusual but provide no assurance of legitimacy.
As of the latest assessment, wlfi-bitflyer.com has been taken offline, reducing immediate exposure. However, the domain remains registered and could be reactivated or repurposed. Users who interacted with the site should assume compromise of any credentials or wallet details shared. Monitoring for unauthorized transactions and revoking access to connected applications is recommended. The elevated risk classification persists due to the domain's recent creation, brand impersonation, and prior malicious activity, underscoring the need for continued vigilance in cryptocurrency-related interactions.
Data Coverage
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
VirusTotal
8 → 7
-
VirusTotal
8 → 7
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, nombres TLS y marcas de tiempo
ICANN OVERSIGHT
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of wlfi-bitflyer.com · checked Jun 27, 2026
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.