moonpay-commerce-git-wallet-connect-tues-eve-heliofi[.]vercel[.]app
“MoonPay Commerce | Sell more with crypto ⚡️”
moonpay-commerce-git-wallet-connect-tues-eve-heliofi.vercel.app — Contenuto non disponibile. Simulazione del marchio: WalletConnect; Tipo di truffa: Crypto Scam. Riepilogo delle prove: VirusTotal 11/95 (ChainPatrol, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 83/100. Registrar: Vercel.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain is flagged as posing an elevated threat level due to brand impersonation. It specifically targets WalletConnect users by mimicking legitimate interfaces, aiming to deceive individuals into engaging with fraudulent crypto-related activities. The domain's offline status indicates it has been successfully taken down, yet its prior existence remains a point of concern for potential victims who might have interacted with it before deactivation.
The domain moonpay-commerce-git-wallet-connect-tues-eve-heliofi.vercel.app was hosted under AS16509, owned by Amazon.com, Inc., with an IP address located in the United States, specifically 216.198.79.67. It was registered through Vercel Inc., a platform known for hosting web applications, which underscores the ease with which such deceptive sites can be created and disseminated. VirusTotal analysis reveals that 11 out of 95 security vendors identified the domain as malicious, corroborating the threat's recognition across multiple security platforms. Moreover, PhishDestroy has blocked this domain, and it appears on at least one security blocklist, indicating its detection and removal from active circulation. The domain utilized SSL certification from Google Trust Services, suggesting an attempt to feign legitimacy and secure user trust.
To mitigate risks associated with brand impersonation threats like this one, users should employ comprehensive security measures such as enabling two-factor authentication on their WalletConnect accounts and remaining vigilant about unsolicited communications that prompt login or payment actions. Regularly updating antivirus software and consulting blocklists can help identify potential phishing sites before engagement. Organizations should consider educating users about the signs of phishing attempts, emphasizing the importance of verifying the authenticity of domains and SSL certificates before entering sensitive information. By adopting these practices, the potential impact of such impersonation threats can be significantly reduced.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo