wallet-connect-web.app
“wallet-connect-web.app”
Security analysis of wallet-connect-web.app covers observed phishing indicators, infrastructure evidence, current status, and defensive guidance.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Сводка доказательств
This domain, wallet-connect-web.app, is identified as a high-risk brand impersonation threat targeting WalletConnect, a widely used protocol for connecting cryptocurrency wallets to decentralized applications. The site is designed to deceive users into believing they are interacting with a legitimate WalletConnect interface, potentially leading to unauthorized access to wallet credentials, private keys, or direct cryptocurrency theft. Such impersonation attacks are commonly used to trick users into signing malicious transactions or revealing sensitive information under false pretenses, often resulting in financial loss or complete account compromise. Analysis indicates that wallet-connect-web.app was registered on February 21, 2026, through Hosting Concepts B.V. d/b/a Registrar.eu, a registrar frequently associated with suspicious domains. The domain resolves to the IP address 190.97.166.172, hosted under AS27956 (Cyber Cast International, S.A.) in Panama, a region often leveraged for anonymized or malicious hosting. At the time of assessment, 21 out of 95 security vendors on VirusTotal flagged the domain as malicious, and it appears on five security blocklists, including those maintained by crypto-specific threat intelligence sources. The absence of an SSL certificate further undermines its legitimacy, as modern secure connections are a baseline expectation for financial or crypto-related services. Users who visited wallet-connect-web.app should assume their interactions were monitored or manipulated. Immediately revoke any wallet permissions granted during the visit using a trusted interface, such as the official WalletConnect website or a verified decentralized application. Scan the device used to access the site for malware, as brand impersonation pages often deploy additional payloads. Monitor connected wallets for unauthorized transactions and consider transferring assets to a new wallet if suspicious activity is detected. Report the domain to relevant threat intelligence platforms to aid in broader detection and takedown efforts. Always verify domain authenticity by cross-referencing with official sources before entering credentials or signing transactions.
Forensic History & Detection Timeline
-
Domain Status Transition Aug 9, 2026 · 12:17 UTCDomain state transitioned from alive to dead.
-
Domain Status Transition Aug 7, 2026 · 00:15 UTCDomain state transitioned from dead to alive.
-
Domain Status Transition Aug 6, 2026 · 00:42 UTCDomain state transitioned from alive to dead.
-
Cloudflare Radar Scan Mar 7, 2026 · 10:09 UTCCloudflare Radar scan registered: View Radar report.
-
Domain Status Transition Mar 1, 2026 · 05:16 UTCDomain state transitioned from alive to dead.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сбор доказательств
Статус в публичных блок-листах
Сохранённый снимок · 1 source
Аналитика доменов
Технические деталиDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of wallet-connect-web.app · checked Apr 24, 2026
Сообщения сообщества
Сообщил 1 участник сообщества; впервые замечено 21.01.2026
- Сохранённые сообщения
- 1
- Уникальные URL
- 1
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание