wispswap[.]io
“Buy”
Riepilogo delle prove
Analysis of wispswap.io indicates a newly registered domain that is being leveraged for a crypto‑related scam. The domain was created on March 03, 2026 and registered through NiceNIC International Group Co., Limited. It resolves to the IP address 188.114.96.3, which belongs to Cloudflare, Inc. (AS13335) and is physically located in the United States. The site is served behind Cloudflare’s network and utilizes HTTP/3, Cloudflare Browser Insights, and a Google Trust Services / WE1 SSL certificate, confirming a valid TLS handshake. Technical fingerprints show the presence of Chart.js, Ant Design, jsDelivr, Facebook Pixel, and cdnjs, suggesting a modern JavaScript stack but offering no direct evidence of malicious code. The page title returned by the server is "Buy," and the domain is classified as a Crypto Scam in the supplied intelligence.
VirusTotal reports a single positive detection out of 94 scanning engines, and the domain appears on one security blocklist. Independent scoring from Gridinsoft assigns a trust score of 0 out of 100, reinforcing the low reputation. Mail exchange records point to privateemail.com servers (mx1 and mx2), which are commonly used for disposable or low‑cost email services. The domain’s MX configuration, combined with its recent creation date, further supports the likelihood of abusive activity. The domain has been taken offline and is currently listed as blocked by PhishDestroy, indicating that mitigation actions have already been applied by at least one anti‑phishing organization.
However, the underlying infrastructure—Cloudflare hosting and a generic SSL certificate—remains reusable for future campaigns. Defenders should continue to monitor the IP 188.114.96.3 for any resurgence of malicious activity, enforce outbound filtering for connections to this address, and add wispswap.io to internal blocklists. Additional scrutiny of any traffic that includes the page title "Buy" in conjunction with cryptocurrency‑related keywords is advised.
Data Coverage
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Prove dell’esito memorizzate
Esito e attribuzione della rimozione
- Esito
unknown- Disponibilità
unreachable- Causa
origin_unreachable- Meccanismo
http_5xx- Attendibilità
- 20%
- Prima osservazione
- Ultima osservazione
Indisponibilità stimata
Tempo fino all’indisponibilità: 0 hSHA-256 della prova c5989e00aa97
Cronologia del rilevamento
-
Cloudflare Radar
Scansione Cloudflare Radar archiviata · Apri scansione
-
VirusTotal
0 → 1
-
VirusTotal
1 → 2
-
Disponibilità
Primo valore archiviato: DNS inattivo
f93a11f87e4d -
Disponibilità
DNS inattivo → Sconosciuto
644dd43c9aa1 -
Disponibilità
Sconosciuto → DNS inattivo
7b7fe6be34ae -
Disponibilità
DNS inattivo → Sconosciuto
bb5364e01165 -
Disponibilità
Sconosciuto → DNS inattivo
6dfe9145995c -
Disponibilità
DNS inattivo → Sconosciuto
1bf39bad8845 -
Disponibilità
Sconosciuto → DNS inattivo
d0b7046e8c2f
Mostra tutto (1)
-
Disponibilità
DNS inattivo → Sconosciuto
c5989e00aa97
Segnalazioni della comunità
Segnalato da 1 membro della comunità; prima osservazione il 03/03/2026
- Segnalazioni memorizzate
- 1
- URL segnalati univoci
- 1
Intelligence della comunità
1 segnalazione della comunità
CategoriaFAKE_RETURNS
I sent 2.7629 ETH to the wallet address 0x423b379312a27B259ca60b121EFb7902027F9147 on the website https://wispswap.io after being told it was a cryptocurrency trading platform. After the transfer the platform showed a balance of about 6,232 USDT. When I tried to withdraw the fund
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of wispswap.io · checked Mar 3, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo