seismicpresale[.]xyz
“Seismic Token Presale | Privacy-Enabled Blockchain for Fintechs”
seismicpresale.xyz — Контент недоступен (HTTP 502). Олицетворение бренда: BNB Chain; Тип мошенничества: Wallet/seed Phishing. Сводка доказательств: VirusTotal 3/93 (alphaMountain.ai, Forcepoint ThreatSeeker, SOCRadar); URLQuery 1 alert; PhishDestroy score 65/100. Регистратор: Ultahost.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
The domain seismicpresale.xyz is a phishing site that poses as bnb chain, specifically impersonating the brand to lure victims into a wallet connect phishing scam. The site has been taken offline, but it previously hosted a Token Presale phishing kit under the page title 'Seismic Token Presale | Privacy-Enabled Blockchain for Fintechs'. This domain is flagged as unsafe by 3 of 95 VirusTotal vendors, including alphaMountain.ai, Forcepoint ThreatSeeker, and SOCRadar, and appears on 1 security blocklist, PhishDestroy. The domain was registered through Ultahost, Inc. on November 03, 2025, and resolves to the IP address 45.12.2.67, which is located in UA under the Autonomous System AS6698 Virtual Systems LLC. The site does not have an SSL certificate, which is a red flag for security-conscious users.
Victims of the seismicpresale.xyz phishing scam should take immediate steps to protect their assets and personal information. If the scam involved a crypto drainer, users should revoke any token approvals and move their funds to a new, secure wallet. For those who may have entered login credentials, it is crucial to change passwords and enable two-factor authentication on all relevant accounts. It is also advisable to monitor accounts for any signs of unauthorized activity or fraud.
To report the seismicpresale.xyz domain, users can submit the URL to PhishDestroy, the security blocklist that has flagged this site. Additionally, reporting the site to VirusTotal and Google Safe Browsing can help prevent further incidents. If any financial losses are incurred, contacting the relevant crypto exchange and filing a report with local authorities is recommended.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS0 Zero | seismicpresale.xyz |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчеты
PD-20260102-0972C2 Recipient: u-abuse@ultahost.com Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание