app[.]across[.]to[.]en[.]v4[.]autos
“Across Protocol – Transfer Assets Between Layer 2s and Mainnet”
app.across.to.en.v4.autos — Contenuto non disponibile (HTTP 502). Simulazione del marchio: Across Protocol; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 5/92 (ChainPatrol, alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 70/100. Registrar: Namecheap.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain, app.across.to.en.v4.autos, poses a direct threat by impersonating Across Protocol, a legitimate cross-chain bridging service. The site mimics the official Across Protocol interface, using an identical page title—'Across Protocol – Transfer Assets Between Layer 2s and Mainnet'—to deceive users into believing they are interacting with a trusted platform. Such impersonation is commonly used to trick victims into connecting wallets or entering sensitive credentials, leading to unauthorized asset transfers or account takeovers. The risk is heightened by the domain’s convincing appearance and targeted focus on cryptocurrency users. Analysis indicates this domain is part of a coordinated phishing infrastructure. It was registered on May 11, 2026, through NAMECHEAP INC, a registrar frequently used in malicious campaigns. The domain is flagged by 5 out of 95 security vendors on VirusTotal, and it appears on three independent security blocklists. Infrastructure analysis reveals the use of Nginx as a web server and Google Tag Manager, which may be employed to track victim interactions or deliver additional malicious payloads. The domain resolved to the IP address 35.214.208.5 before being taken offline. If you visited app.across.to.en.v4.autos or interacted with its content, immediate action is required. Disconnect any wallets linked to the site and revoke permissions for connected applications. Monitor accounts for unauthorized transactions and consider transferring assets to a new wallet if compromise is suspected. Report the domain to relevant security teams or incident response platforms to aid in broader mitigation efforts. Users should verify domain authenticity by cross-referencing official communication channels before engaging with any service claiming to represent Across Protocol.
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | app.across.to.en.v4.autos |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Registration: v4.autos
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain v4.autos behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologie · 2 identified
Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org Confidenza al 100%Google Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com Confidenza al 100%Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of app.across.to.en.v4.autos · checked Jun 26, 2026
Dati e relazioni esterne
PD-20260511-6E76D4 Recipient: abuse@namecheap.com Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo