defilama-wallett[.]typedream[.]app
“DefiLlama Wallet: DefiLlama Wallet Find, Claim & Earn Free Crypto”
defilama-wallett.typedream.app — Contenu indisponible. Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 10/95 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, ESET); Google Safe Browsing flagged; PhishDestroy score 85/100. Bureau d’enregistrement: Squarespace Domains II.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain defilama-wallett.typedream.app was created on January 22, 2021 and is registered through Squarespace Domains II LLC. Infrastructure analysis shows the domain resolves to 172.67.206.36, an address owned by AS13335 Cloudflare, Inc. and located in the United States. DNS is served by the Cloudflare nameservers annalise.ns.cloudflare.com and darwin.ns.cloudflare.com, and the site presented a Google Trust Services / WE1 SSL certificate, indicating the use of a public certificate issued by Google. HTTP probing returned a 404 status code, and the page title captured during the scan reads "DefiLlama Wallet: DefiLlama Wallet Find, Claim & Earn Free Crypto," which aligns with the reported scam type of a crypto drainer.
Google Safe Browsing flags the domain for social engineering, and Scamadviser assigns a trust score of 1 / 100, reinforcing the malicious characterization. VirusTotal records indicate that ten of ninety‑five scanned security vendors flagged the domain, and the site appears on one external blocklist. The phishing kit associated with the domain is identified as a Giveaway Scam, and the domain has been added to the PhishDestroy blocklist.
Although the current status is offline, the combination of low trust scores, multiple vendor detections, and explicit malicious labeling suggests a high‑risk profile. Defenders should proactively block the domain at the DNS and proxy layers, continue to monitor the IP address for any reactivation, and consider adding the host to internal threat intelligence feeds. Ongoing vigilance is advised because the offline state may be temporary and the underlying infrastructure—Cloudflare‑hosted services and a publicly trusted SSL certificate—can be rapidly repurposed for further crypto‑draining campaigns.
Signaux de sécurité
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Technologies · 9 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org Confiance à 100 %React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org Confiance à 100 %Next.js is a React framework for developing single page Javascript applications.
nextjs.org Confiance à 100 %Google Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.
cloud.google.com Confiance à 100 %Cloud CDN uses Google's global edge network to serve content closer to users.
cloud.google.com Confiance à 100 %Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Analyse de la configuration du site
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif