xlkndza[.]squidvr[.]com
“BIT Mining”
xlkndza.squidvr.com — Belum terverifikasi. Peniruan identitas merek: WalletConnect; Jenis penipuan: Crypto Scam. Ringkasan bukti: VirusTotal 11/91 (ADMINUSLabs, BitDefender, CRDF, CyRadar, Forcepoint ThreatSeeker); 1 external blocklist match (ScamSniffer); PhishDestroy score 83/100. Registrar: Dynadot.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, xlkndza.squidvr.com, is identified as a phishing resource designed to impersonate WalletConnect, a widely used protocol for connecting decentralized applications to cryptocurrency wallets. Analysis indicates the site presents a fraudulent interface under the page title 'BIT Mining,' likely intended to deceive users into entering wallet credentials or authorizing malicious transactions. The use of cryptocurrency-themed lures aligns with observed tactics in credential harvesting and unauthorized fund transfers, posing a direct financial risk to visitors. Infrastructure analysis reveals multiple technical indicators supporting its malicious classification. The domain was registered on October 13, 2021, through Dynadot LLC and currently resolves to the IP address 104.21.53.189, which is associated with Cloudflare’s content delivery network. Detection metrics show the domain is flagged by 11 out of 95 security vendors on VirusTotal and appears on two independent security blocklists. Additional telemetry indicates it is actively blocked by at least two real-time phishing detection systems. The SSL certificate is issued by Google Trust Services, and the site employs Facebook Pixel and HTTP/3, suggesting an attempt to mimic legitimate web infrastructure. Users who have visited xlkndza.squidvr.com or interacted with its content are advised to take immediate remedial actions. Any entered credentials or wallet authorizations should be considered compromised and revoked through the legitimate WalletConnect interface. Connected wallets must be audited for unauthorized transactions, and all active sessions should be terminated. It is recommended to monitor associated accounts for suspicious activity and update authentication credentials across platforms where similar passwords may have been reused. No further interaction with the domain should occur, and any cached redirects should be cleared from browser data.
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
ICANN OVERSIGHT
Registration: squidvr.com
Akreditasi dan konteks RAA
Akreditasi dan konteks RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain squidvr.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknologi · 3 identified
Conversion-tracking pixel by Meta — logs page views and custom events to Facebook/Instagram ad accounts.
www.facebook.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisis VirusTotal
Bukti Terarsip
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive