dazzling-sunshine-2bc570[.]netlify[.]app
“Uphold | Login”
dazzling-sunshine-2bc570.netlify.app — Conteúdo indisponível. Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 21/94 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 3 alerts; Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 100/100. Registrador: Netlify.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies dazzling-sunshine-2bc570.netlify.app as an active crypto drainer, a high-risk phishing site designed to steal cryptocurrency funds by tricking users into connecting malicious wallet extensions or entering private keys on a fake login portal. This domain leverages Netlify’s hosting infrastructure to host deceptive pages mimicking legitimate crypto services, making it part of a growing trend in crypto-related social engineering campaigns. The scam is specifically engineered to drain digital assets from unsuspecting victims, with indicators pointing to automated fund transfers upon wallet connection or seed phrase submission. This domain was flagged by Google Safe Browsing under the SOCIAL_ENGINEERING category and is blocked by 18 out of 95 VirusTotal security vendors, including multiple threat intelligence platforms specializing in cryptocurrency scams. It resolves to IP address 35.157.26.135, hosted on Netlify’s infrastructure, which is frequently exploited for fast-flux phishing operations due to its legitimate CDN capabilities. While the SSL certificate (issued by DigiCert Inc) appears legitimate at first glance, its presence does not validate the site’s intent—only the encryption channel. The domain’s recent creation and rapid deployment to evade detection further underscore its malicious nature. Mitigation for this crypto drainer threat requires immediate action: users should avoid accessing dazzling-sunshine-2bc570.netlify.app entirely. If any interaction occurred, disconnect the wallet from the browser, revoke any unintended approvals via blockchain explorers (e.g., Etherscan for Ethereum), and transfer remaining funds to a newly generated, secure wallet. Always verify crypto-related URLs through PhishDestroy or official project websites before entering credentials or connecting wallets. Enable hardware wallet signing and multi-factor authentication where possible, and educate users on recognizing fake login prompts and unsolicited wallet connection requests to prevent future exposure.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | dazzling-sunshine-2bc570.netlify.app |
malicious | Sinkholed |
| OpenDNS | dazzling-sunshine-2bc570.netlify.app |
phishing | Phishing Block |
| DNS4EU | dazzling-sunshine-2bc570.netlify.app |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 6 identified
Popular CSS framework for responsive, mobile-first web development.
Platform for deploying and hosting modern web applications.
Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of dazzling-sunshine-2bc570.netlify.app · checked Apr 1, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo