sushi-cc[.]bar
“Staking | Sushi 🍣”
Сводка доказательств
The domain sushi-cc.bar is a confirmed phishing site that impersonated the SushiSwap brand to trick users into connecting their cryptocurrency wallets, specifically targeting wallet connect credentials. It posed as a legitimate staking platform under the page title 'Staking | Sushi 🍣' and was designed to steal funds through wallet approval scams. The site has been taken offline, but the domain remains a high-risk indicator of malicious activity.
Technical analysis shows that sushi-cc.bar is flagged by 2 of 95 VirusTotal vendors, including Gridinsoft and SOCRadar, and appears on 4 security blocklists: PhishDestroy, Polkadot, Enkrypt, and Codeesura. It was registered through Dynadot LLC on November 28, 2025, and resolves to IP address 188.114.97.3, hosted by Cloudflare Inc. (AS13335) in the US. No SSL certificate was issued for the domain, and Google Safe Browsing did not flag it, though Gridinsoft assigned a trust score of 0/100. The domain uses nameservers ashley.ns.cloudflare.com and denver.ns.cloudflare.com.
Although sushi-cc.bar is now offline, users who interacted with it should immediately revoke any token approvals granted to the site using a blockchain explorer or wallet security tool, then transfer all funds to a new, secure wallet. Monitor for unauthorized transactions and report the incident to SushiSwap's official support channels and platforms like PhishDestroy. For future safety, always verify domain names carefully and avoid connecting wallets to sites with suspicious URLs or mismatched branding.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
7 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Криминалистическая аналитика
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание