arbswapapp[.]live
“Arbswap - Next Generation Decentralized Exchange”
Сводка доказательств
This domain, arbswapapp.live, is identified as a brand impersonation threat specifically targeting Revolut, a financial services provider. Analysis indicates the domain was designed to mimic legitimate cryptocurrency exchange platforms, as evidenced by its page title, 'Arbswap - Next Generation Decentralized Exchange.' The domain is currently offline, but prior activity suggests malicious intent to deceive users into disclosing sensitive financial or personal information under false pretenses. Infrastructure analysis reveals the domain was registered on September 03, 2025, through Web Commerce Communications Limited dba WebNic.cc. It resolved to the IP address 104.21.64.1, hosted on Cloudflare's network (AS13335). At the time of detection, the domain was flagged by 9 of 95 security vendors on VirusTotal, indicating a high likelihood of malicious activity. Additionally, it appeared on one security blocklist and was blocked by at least one anti-phishing system. The domain lacked an SSL certificate, further reducing its legitimacy and increasing the risk of interception or manipulation of user data. The domain has since been taken offline, but similar threats may persist. Organizations and users are advised to monitor for domains registered through the same registrar or resolving to the same IP range. Network administrators should update blocklists to include this domain and its associated indicators, such as the IP address 104.21.64.1. Users who may have interacted with this domain should review account activity for unauthorized transactions and reset credentials for any associated financial or cryptocurrency services. Proactive monitoring of newly registered domains impersonating known brands is recommended to mitigate future risks.
Data Coverage
Сигналы безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сообщения сообщества
Сообщил 1 участник сообщества; впервые замечено 10.09.2025
- Сохранённые сообщения
- 1
- Уникальные URL
- 1
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание