airc-on-arc[.]vercel[.]app
“AIRC // Agent Wallet Dashboard”
airc-on-arc.vercel.app — Скрытый · достижимый. Тип мошенничества: Generic Phishing. Сводка доказательств: VirusTotal 9/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Forcepoint ThreatSeeker, Fortinet); Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. Регистратор: Vercel.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy analysts have identified a high-risk phishing domain, airc-on-arc.vercel.app, which is actively targeting cryptocurrency users by impersonating the legitimate AIRC Agent Wallet Dashboard. This is a classic crypto drainer and brand impersonation attack designed to harvest wallet credentials and potentially drain victims' funds. The domain masquerades as an official wallet interface, luring users into entering sensitive information.
The technical indicators paint a clear picture of malicious intent. VirusTotal reports a detection rate of 1 out of 95 security vendors flagging this domain, while Google Safe Browsing explicitly tags it as phishing. The domain was registered on May 21, 2026, through Vercel and resolves to IP address 64.29.17.195. It currently appears on 3 third-party security blocklists and holds an SSL certificate issued by Google Trust Services under the WR1 certificate authority, which is often misused by phishing sites to appear legitimate.
As of this writing, the domain remains active and continues to host the fraudulent dashboard. PhishDestroy recommends that organizations block access to airc-on-arc.vercel.app immediately and educate users to verify URLs before entering wallet credentials. Users who have interacted with the site should change their wallet passwords and enable two-factor authentication. The remaining risk includes potential credential theft and financial loss, so ongoing monitoring for related domains is advised.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание