http://verify-asset.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encoding“Collab.Land Connect”
verify-asset.netlify.app — Conteúdo indisponível. Representação da marca: MetaMask. Resumo das evidências: VirusTotal 15/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Emsisoft); URLScan malicious verdict; Google Safe Browsing flagged; Spamhaus DBL_ABUSED_PHISH; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 95/100. Registrador: Netlify.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of verify-asset.netlify.app confirms active credential phishing infrastructure targeting cryptocurrency wallet users. The domain, hosted on Netlify's platform, resolves to IP address 35.157.26.135 with no assigned nameservers, a configuration often observed in ephemeral phishing deployments. As of July 30, 2026, the site remains operational despite detection by three security blocklists—PhishDestroy, MetaMask, and SEAL—indicating specialized targeting of crypto-related credentials. Google Safe Browsing classifies this domain under social engineering, corroborating the credential harvesting intent.
VirusTotal reports 15 of 91 security vendors flagging the domain, though the specific detection rules or payloads are not detailed in available intelligence. The absence of nameservers may suggest a short-lived campaign or automated provisioning to evade takedowns. No brand name or phishing kit identifier is currently associated with the domain, leaving the exact impersonation target unclear.
Defenders should treat this domain as high-risk for crypto wallet credential theft and prioritize blocking at DNS, proxy, and endpoint levels. Network security teams are advised to monitor for connections to 35.157.26.135 and inspect any associated TLS certificates for further indicators. Given the domain's persistence despite blocklist presence, expect continued rotation of similar Netlify-hosted subdomains in this campaign.
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaNetlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% de confiançaJSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaGoogle PageSpeed Insights — mobile performance audit of verify-asset.netlify.app · checked Jul 30, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://verify-asset.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingSe você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraEnvie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarRelatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMonitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo