arbswapapp[.]live
“Arbswap - Next Generation Decentralized Exchange”
Résumé des preuves
This domain, arbswapapp.live, is identified as a brand impersonation threat specifically targeting Revolut, a financial services provider. Analysis indicates the domain was designed to mimic legitimate cryptocurrency exchange platforms, as evidenced by its page title, 'Arbswap - Next Generation Decentralized Exchange.' The domain is currently offline, but prior activity suggests malicious intent to deceive users into disclosing sensitive financial or personal information under false pretenses. Infrastructure analysis reveals the domain was registered on September 03, 2025, through Web Commerce Communications Limited dba WebNic.cc. It resolved to the IP address 104.21.64.1, hosted on Cloudflare's network (AS13335). At the time of detection, the domain was flagged by 9 of 95 security vendors on VirusTotal, indicating a high likelihood of malicious activity. Additionally, it appeared on one security blocklist and was blocked by at least one anti-phishing system. The domain lacked an SSL certificate, further reducing its legitimacy and increasing the risk of interception or manipulation of user data. The domain has since been taken offline, but similar threats may persist. Organizations and users are advised to monitor for domains registered through the same registrar or resolving to the same IP range. Network administrators should update blocklists to include this domain and its associated indicators, such as the IP address 104.21.64.1. Users who may have interacted with this domain should review account activity for unauthorized transactions and reset credentials for any associated financial or cryptocurrency services. Proactive monitoring of newly registered domains impersonating known brands is recommended to mitigate future risks.
Data Coverage
Signaux de sécurité
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
ICANN OVERSIGHT
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif