wlshibonk[.]web[.]app
“PUMP Airdrop”
wlshibonk.web.app — असत्यापित. ब्रांड प्रतिरूपण: Phantom; घोटाले का प्रकार: Crypto Scam. साक्ष्य सारांश: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); 1 external blocklist match (Enkrypt); PhishDestroy score 76/100. रजिस्ट्रार: Google Domains.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain, wlshibonk.web.app, poses a high-risk brand impersonation threat targeting users of the Phantom cryptocurrency wallet. The site falsely advertises a "PUMP Airdrop" to deceive visitors into connecting their wallets or divulging sensitive credentials, such as recovery phrases or private keys. Such scams typically lead to unauthorized access to digital assets, immediate fund theft, or installation of malicious smart contracts designed to drain wallets upon interaction. Analysis indicates the domain is registered through Google LLC and resolves to the IP address 216.198.79.67, hosted on Amazon.com, Inc. infrastructure (AS16509). The SSL certificate is issued by Google Trust Services (WR4), a common tactic to appear legitimate. As of the latest scan, only 1 out of 95 security vendors on VirusTotal flags this domain, suggesting it may evade detection by less sophisticated security tools. The domain appears on two security blocklists and is actively blocked by at least two threat intelligence platforms. No historical registration data is publicly available, but the use of Google's web.app subdomain service suggests recent creation to exploit current trends in cryptocurrency airdrops. Users who visited wlshibonk.web.app should assume their wallet credentials or connected sessions may be compromised. Immediate action is required: revoke any active wallet connections to the site via the Phantom wallet interface, transfer funds to a new wallet with a fresh recovery phrase, and monitor all linked accounts for unauthorized transactions. If recovery phrases or private keys were entered, consider all associated wallets permanently compromised. Enable transaction previews and multi-factor authentication where available, and report the domain to relevant threat intelligence platforms to aid in broader detection efforts. Avoid interacting with any further communications related to this airdrop, as follow-up phishing attempts via email or social media are likely.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
फॉरेंसिक इंटेलिजेंस
तकनीकें · 4 identified
Google platform for building mobile and web applications with backend services.
Free public CDN for open-source projects, serving files from npm and GitHub.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
संग्रहीत साक्ष्य
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of wlshibonk.web.app · checked Mar 2, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।