leap-app[.]cc
Проверка домена leap-app.cc на фишинг и безопасность
“Leap Wallet: Cosmos Crypto Wallet for NFTs, Staking & Swaps”
leap-app.cc — Последний известный активный (HTTP 200). Сводка доказательств: VirusTotal 15/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Регистратор: Internet Domain Servic….
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This report documents the investigation of the domain leap-app.cc, which is currently active and classified as a generic phishing threat with a high risk level. The domain impersonates Leap Wallet, a legitimate Cosmos cryptocurrency wallet for NFTs, staking, and swaps, aiming to deceive users into revealing sensitive credentials or connecting their wallets to a malicious interface. Analysis confirms the threat is live and operational.
Technical indicators for leap-app.cc include a VirusTotal detection rate of 3 out of 95 security vendors, indicating initial recognition by a minority of threat intelligence sources. The domain resolves to IP address 172.67.128.162 and was created on May 24, 2026, through registrar Internet Domain Service BS Corp. The page title is “Leap Wallet: Cosmos Crypto Wallet for NFTs, Staking & Swaps,” matching legitimate branding to increase credibility. No blocklist count or trust scores were provided in the intelligence data, but the active status and high-risk classification underscore its malicious intent.
Current status confirms leap-app.cc remains active and accessible. Recommendations include immediate blocking of this domain at network and email gateways, reporting to the hosting provider and registrar for takedown, and issuing user advisories warning of the impersonation. Users should be instructed to verify all URLs through official channels before connecting crypto wallets. Monitoring for similar domains and continuous scanning are advised to mitigate ongoing phishing campaigns.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 8 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100% уверенностиReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% уверенностиNext.js is a React framework for developing single page Javascript applications.
nextjs.org 100% уверенностиGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100% уверенностиCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ конфигурации сайта
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание