claimwlfidapps[.]vercel[.]app
“World Liberty Financial - Easily unlock your WLFI tokens”
claimwlfidapps.vercel.app — Контент недоступен. Тип мошенничества: Crypto Scam. Сводка доказательств: VirusTotal 11/93 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 3 alerts; Google Safe Browsing flagged; 1 external blocklist match (ScamSniffer); CF Radar malicious; PhishDestroy score 83/100. Регистратор: Tucows.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of claimwlfidapps.vercel.app reveals a high-risk crypto drainer phishing domain targeting users of World Liberty Financial, as indicated by the page title 'World Liberty Financial - Easily unlock your WLFI tokens.' The domain, registered on February 21, 2026, through Tucows Domains Inc., is currently offline with an HTTP 451 status, suggesting restricted access due to legal or policy violations. Infrastructure analysis shows the domain resolves to IP 216.198.79.195, hosted on Amazon.com, Inc. (AS16509) in the United States. SSL certification is provided by Google Trust Services (WR1), a common choice for both legitimate and malicious domains, offering no definitive indication of fraud on its own.
Security vendors have flagged this domain, with 11 out of 93 engines on VirusTotal detecting malicious activity, and it appears on two security blocklists, including PhishDestroy and ScamSniffer. Google Safe Browsing classifies the site as engaging in social engineering, a common tactic for crypto drainers designed to trick users into connecting wallets or entering seed phrases. The use of Vercel hosting and HSTS enforcement aligns with patterns observed in phishing campaigns aiming to appear legitimate.
While the domain is currently offline, defenders should treat any future resolution or reappearance as a high-priority threat. Monitoring for similar domains using the same hosting provider, SSL issuer, or naming conventions is recommended. No direct evidence links this domain to a specific phishing kit, but the combination of crypto-focused branding, social engineering flags, and detection by specialized scam-blocking tools strongly supports the crypto drainer classification.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | claimwlfidapps.vercel.app |
malicious | Sinkholed |
| DNS0 Zero | claimwlfidapps.vercel.app |
malicious | Sinkholed |
| Cloudflare DNS | claimwlfidapps.vercel.app |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 2 identified
Cloud platform for frontend deployment, optimized for Next.js.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of claimwlfidapps.vercel.app · checked Mar 2, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание