victim-nomad[.]xyz
“Nomad | Bridge”
victim-nomad.xyz — 콘텐츠를 사용할 수 없음 (HTTP 502). 브랜드 사칭: MetaMask; 사기 유형: Crypto Scam. 증거 요약: VirusTotal 2/95 (alphaMountain.ai, Forcepoint ThreatSeeker); 1 external blocklist match (ScamSniffer); PhishDestroy score 58/100.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
The domain victim-nomad.xyz is a cryptocurrency phishing site engaged in brand impersonation targeting MetaMask users. It presented itself as a legitimate Nomad Bridge interface to deceive victims into entering wallet credentials or approving malicious transactions, though no drainer kit was confirmed. As of the latest verification, victim-nomad.xyz has been taken offline.
Technical indicators show victim-nomad.xyz was flagged by 2 of 95 VirusTotal security vendors, including alphaMountain.ai and Forcepoint ThreatSeeker. The domain appears on 2 security blocklists (PhishDestroy and ScamSniffer) but was not flagged by Google Safe Browsing. It was created on February 21, 2026, and resolved to the IPv6 address 2a06:98c1:3121::3, hosted on Cloudflare's network (AS13335) in the US. The SSL certificate was issued by WE1, and the observed page title was 'Nomad | Bridge'.
Victims of victim-nomad.xyz should immediately revoke any token approvals granted to unknown contracts using a tool like Etherscan's token approval checker. Move remaining funds to a new, secure wallet and monitor transaction history for unauthorized activity. Change MetaMask passwords and enable two-factor authentication on all accounts. Report the phishing domain to MetaMask's official support channels, the hosting provider (Cloudflare), and platforms like PhishTank or the Anti-Phishing Working Group to aid in takedown efforts.
위협 대응 Pipeline
공개 차단 목록 상태
VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.