pyntam-wallet[.]webflow[.]io
“404 - Page not found”
pyntam-wallet.webflow.io — Contenu indisponible. Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 11/95 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, Fortinet); PhishDestroy score 83/100. Bureau d’enregistrement: MarkMonitor.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain pyntam-wallet.webflow.io is registered through MarkMonitor, Inc. and was created on May 08 2013. It resolves to the IP address 172.64.151.8, which belongs to AS13335 Cloudflare, Inc., located in the United States. The site is protected by Cloudflare’s edge services and serves content over HTTP/3, while the TLS certificate is issued by Google Trust Services under the WE1 designation. Current DNS records list journey.ns.cloudflare.com and lamar.ns.cloudflare.com as authoritative name servers.
When accessed, the site returns an HTTP 404 status code and the page title “404 – Page not found”, indicating that the original payload is no longer publicly reachable. The domain has been classified as a crypto‑drainer scam and was previously flagged by PhishDestroy. VirusTotal analysis shows 11 of 95 security vendors mark the domain as malicious, and it appears on one external blocklist. No additional content, wallet addresses, or malicious payloads have been captured, and the site’s offline state limits further forensic observation.
Because the infrastructure—namely the Cloudflare front‑end, Google‑issued certificate, and the MarkMonitor registration—matches patterns used by known cryptocurrency theft campaigns, defenders should assume the domain was actively used to lure victims into transferring crypto assets. Recommended mitigation steps include adding the domain to network and email deny lists, monitoring DNS queries for the associated IP and name servers, and maintaining vigilance for any future re‑registration or resurrection of the subdomain. Continuous threat‑intel feeds should be consulted for updates, and any incidents involving similar crypto‑drainer activity should be correlated with the observed indicators.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif