http://verify-asset.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encoding“Collab.Land Connect”
Analysis of verify-asset.netlify.app confirms active credential phishing infrastructure targeting cryptocurrency wallet users. The domain, hosted on Netlify's platform, resolves to IP address 35.157.26.135 with no assigned nameservers, a configuration often observed in ephemeral phishing deployments. As of July 30, 2026, the site remains operational despite detection by three security blocklists—PhishDestroy, MetaMask, and SEAL—indicating specialized targeting of crypto-related credentials. Google Safe Browsing classifies this domain under social engineering, corroborating the credential harvesting intent.
VirusTotal reports 15 of 91 security vendors flagging the domain, though the specific detection rules or payloads are not detailed in available intelligence. The absence of nameservers may suggest a short-lived campaign or automated provisioning to evade takedowns. No brand name or phishing kit identifier is currently associated with the domain, leaving the exact impersonation target unclear.
Defenders should treat this domain as high-risk for crypto wallet credential theft and prioritize blocking at DNS, proxy, and endpoint levels. Network security teams are advised to monitor for connections to 35.157.26.135 and inspect any associated TLS certificates for further indicators. Given the domain's persistence despite blocklist presence, expect continued rotation of similar Netlify-hosted subdomains in this campaign.
10 fonti esterne monitorate · snapshot del 12/08/2026
Primo valore archiviato: Raggiungibile
0 → 1
Raggiungibile → Non raggiungibile
5 tecnologie identificate con alta affidabilità
Google PageSpeed Insights — mobile performance audit of verify-asset.netlify.app · checked Jul 30, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://verify-asset.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingSe hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaSegnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraControlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo