uniswap-protocol-dex-relay-v79[.]vercel[.]app
uniswap-protocol-dex-relay-v79.vercel.app — Последний известный активный (HTTP 308). Олицетворение бренда: Uniswap; Тип мошенничества: Crypto Drainer. Сводка доказательств: VirusTotal 15/91 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Регистратор: Vercel.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain is flagged as a crypto drainer and is currently active as of August 03, 2026. The domain, uniswap-protocol-dex-relay-v79.vercel.app, is hosted on Vercel's infrastructure, a common platform for rapid deployment of phishing pages. It has been identified and blocked by PhishDestroy, a security vendor specializing in phishing detection, and appears on one security blocklist. This indicates that the domain has been actively catalogued by at least one threat intelligence source, lending credibility to the crypto drainer classification.
However, no additional vendor scans, such as Google Safe Browsing or other blocklist data, were available in the analyzed intelligence at the time of this report, so the full scope of its detection footprint remains unclear. The domain's naming convention, which includes a reference to a decentralized exchange protocol and a versioned relay identifier, suggests it is designed to impersonate a legitimate DeFi service, likely to trick users into connecting wallets or approving malicious transactions. The exact page content, including any login forms or wallet connection prompts, has not been analyzed, so the specific lure mechanism is unconfirmed. Infrastructure analysis reveals the use of Vercel's hosting, which provides a valid SSL certificate by default, making the site appear more legitimate to unsuspecting visitors.
The domain is active, meaning it is still serving content and potentially collecting credentials or draining funds. Defenders should treat this domain as a confirmed threat, block it at the network and email gateway levels, and warn users against interacting with it. Users who have visited the site should revoke any token approvals granted and monitor their wallets for unauthorized transactions.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 5 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com 100% уверенностиRxJS is a reactive library used to implement reactive programming to deal with async implementation, callbacks, and event-based programs.
reactivex.io 100% уверенностиJSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com 100% уверенностиHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиАнализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание