vvv[.]app-beefy[.]lat
“Welcome to nginx!”
vvv.app-beefy.lat — Non vérifié. Type d'arnaque : Crypto Scam. Résumé des preuves: VirusTotal 3/91 (ChainPatrol, Forcepoint ThreatSeeker, Gridinsoft); PhishDestroy score 71/100. Bureau d’enregistrement: Dynadot.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, vvv.app-beefy.lat, is identified as a high-risk crypto phishing site targeting decentralized finance (DeFi) users. The naming convention mimics legitimate DeFi platforms, likely attempting to deceive users into interacting with fraudulent smart contracts or wallet-draining scripts. No specific drainer kit signatures have been confirmed, but the domain structure suggests an intent to impersonate established DeFi protocols, potentially leading to asset theft or credential harvesting. Infrastructure analysis reveals the following technical indicators: the domain is flagged by 2 out of 95 security vendors on VirusTotal, indicating limited but confirmed malicious activity. It was registered through Dynadot LLC on May 31, 2026, a future-dated registration that is atypical and suggestive of fraudulent intent. The domain resolves to the IP address 188.114.97.3, which is associated with a content delivery network, potentially masking its true origin. It appears on one security blocklist and uses an SSL certificate issued by Google Trust Services (WE1), which, while legitimate, does not mitigate the underlying threat. Google Safe Browsing has not yet classified this domain, leaving a gap in automated protection. The domain remains active and unmitigated, posing a continued risk to users. Current response actions are limited to a single blocklist entry and partial vendor detections, which may not provide comprehensive protection. Users are advised to avoid interaction with this domain, verify DeFi platform URLs through official sources, and employ browser-based security extensions or network-level filtering to block access. Given the high-risk classification and active status, further monitoring and takedown efforts are recommended to disrupt its operational infrastructure.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
ICANN OVERSIGHT
Registration: app-beefy.lat
Contexte de l’accréditation et du RAA
Contexte de l’accréditation et du RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain app-beefy.lat behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif