MALICIOUS — HIGH
Analyse phishing et sécurité de dapps-auth.my
dapps-auth[.]
The domain dapps-auth.my was observed on July 12, 2026 and is classified as a DeFi scam.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- Disponibilité
- Dernier actif connu · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
dapps-auth.my — Dernier actif connu (HTTP 200). Type d'arnaque : Investment Scam. Résumé des preuves: VirusTotal 3/91 (alphaMountain.ai, CRDF, Gridinsoft); Spamhaus DBL_PHISH; PhishDestroy score 69/100. Bureau d’enregistrement: Dynadot.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Evidence Analysis
The domain dapps-auth.my was observed on July 12, 2026 and is classified as a DeFi scam. It is currently listed as active and has been blocked by PhishDestroy. The site returns HTTP 200 while the page title reports "403 Forbidden," suggesting a misconfiguration or an intentional barrier to casual inspection. VirusTotal analysis shows a single security vendor flagging the domain, reinforcing the malicious assessment.
Infrastructure analysis reveals the domain was registered on July 20, 2025 through Dynadot LLC. It resolves to IP address 191.96.56.44, which belongs to AS47583 Hostinger International Limited located in the United States. The host presents a Let's Encrypt R12 TLS certificate and is served by a LiteSpeed web server with HTTP/3 enabled. Nameservers point to ns1.dns-parking.com and ns2.dns-parking.com, typical of low‑cost or parked hosting environments.
Reputation metrics are uniformly negative: Gridinsoft assigns a trust score of 0 out of 100, and the domain appears on a single security blocklist. The recent registration date, low trust score, and association with a known DeFi phishing campaign collectively indicate a high risk to any user who may be directed to this site via malicious links or social engineering tactics.
Defenders should block the domain at the network perimeter and update endpoint detection rules to flag any DNS resolution to 191.96.56.44. Continuous monitoring of TLS certificates issued by Let's Encrypt for this domain can provide early warning of re‑issuance. Incident response teams should treat any credential or wallet address submissions to this domain as compromised, advise affected users to revoke access, and enforce credential rotation.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Couverture des données12 recorded checks
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 3 identified
High-performance web server compatible with Apache configurations.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externesIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.