moonpay-commerce-git-wallet-connect-tues-eve-heliofi[.]vercel[.]app
“MoonPay Commerce | Sell more with crypto ⚡️”
moonpay-commerce-git-wallet-connect-tues-eve-heliofi.vercel.app — Contenu indisponible. Usurpation de l'identité de la marque : WalletConnect; Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 11/95 (ChainPatrol, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 83/100. Bureau d’enregistrement: Vercel.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain is flagged as posing an elevated threat level due to brand impersonation. It specifically targets WalletConnect users by mimicking legitimate interfaces, aiming to deceive individuals into engaging with fraudulent crypto-related activities. The domain's offline status indicates it has been successfully taken down, yet its prior existence remains a point of concern for potential victims who might have interacted with it before deactivation.
The domain moonpay-commerce-git-wallet-connect-tues-eve-heliofi.vercel.app was hosted under AS16509, owned by Amazon.com, Inc., with an IP address located in the United States, specifically 216.198.79.67. It was registered through Vercel Inc., a platform known for hosting web applications, which underscores the ease with which such deceptive sites can be created and disseminated. VirusTotal analysis reveals that 11 out of 95 security vendors identified the domain as malicious, corroborating the threat's recognition across multiple security platforms. Moreover, PhishDestroy has blocked this domain, and it appears on at least one security blocklist, indicating its detection and removal from active circulation. The domain utilized SSL certification from Google Trust Services, suggesting an attempt to feign legitimacy and secure user trust.
To mitigate risks associated with brand impersonation threats like this one, users should employ comprehensive security measures such as enabling two-factor authentication on their WalletConnect accounts and remaining vigilant about unsolicited communications that prompt login or payment actions. Regularly updating antivirus software and consulting blocklists can help identify potential phishing sites before engagement. Organizations should consider educating users about the signs of phishing attempts, emphasizing the importance of verifying the authenticity of domains and SSL certificates before entering sensitive information. By adopting these practices, the potential impact of such impersonation threats can be significantly reduced.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif