dapp-g0mp90q5z-klimadao[.]vercel[.]app
“Klima Protocol | Open Infrastructure for Carbon Markets”
dapp-g0mp90q5z-klimadao.vercel.app — Ammantato · raggiungibile. Tipo di truffa: Investment Scam. Riepilogo delle prove: VirusTotal 3/91 (ChainPatrol, alphaMountain.ai, Forcepoint ThreatSeeker); 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 98/100. Registrar: Vercel.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
PhishDestroy identifies dapp-g0mp90q5z-klimadao.vercel.app as an active phishing domain masquerading as a legitimate Klimadao decentralized application (DApp). The site leverages the trusted Vercel.app domain hosting service to impersonate official Klimadao infrastructure, aiming to harvest user credentials and cryptocurrency wallet private keys under the guise of a climate-focused DeFi platform. This domain was flagged with an elevated risk level and remains active despite limited detection coverage. Security analysis shows it resolves to IP 64.29.17.67 and is registered through Vercel Inc., a legitimate hosting provider often abused by threat actors. Only 1 out of 95 VirusTotal security vendors currently detect this phishing attempt, highlighting the stealthy nature of this campaign. The domain employs a Google Trust Services SSL certificate to enhance credibility, while its subdomain structure (klimadao.vercel.app) attempts to exploit brand confusion with the legitimate klimadao.com platform. Users who visited this fake DApp should immediately disconnect from the site and revoke any permissions granted to connected wallets. Scan all connected devices for malware using reputable antivirus tools, as phishing pages often deploy keyloggers or browser extensions to steal credentials. Report the domain to your antivirus provider and avoid interacting with any subsequent communications from this source. Always verify DApp URLs through official Klimadao channels before entering sensitive information.
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 6 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
JavaScript library for building user interfaces with component-based architecture.
Cloud platform for frontend deployment, optimized for Next.js.
React framework for production with hybrid static and server rendering.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Module bundler for modern JavaScript applications.
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of dapp-g0mp90q5z-klimadao.vercel.app · checked Mar 31, 2026
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo