injectivedesktop[.]org
“Injective Desktop Wallet | Trade, Stake, Own”
Сохранённое обнаружение
Обнаружена маскировка
- Тип маскировки
content_split- Оценка маскировки
- 1/6
Сводка доказательств
Analysis indicates that www.injectivedesktop.org is an active malicious site that presents itself as the "Injective Desktop Wallet" according to its page title. The domain resolves to 216.150.1.1, an IP owned by Vercel, Inc. in the United States, and is served behind Cloudflare name servers (frank.ns.cloudflare.com, nia.ns.cloudflare.com). The site was registered on 25 March 2026 through NICENIC INTERNATIONAL GROUP CO., LIMITED and uses a Let’s Encrypt R12 certificate with HSTS enabled. Automated scans report a Gridinsoft trust score of 0/100 and 7 of 94 VirusTotal scanners flag the domain as malicious. The infrastructure includes Vercel hosting and a LiveChat component, which is commonly abused for credential or private‑key harvesting. The classification as a "Crypto Drainer" suggests the site attempts to trick users into submitting wallet credentials or signing transactions that transfer funds to an attacker‑controlled address. Current evidence is limited to the page title and infrastructure metadata; the exact phishing flow, malicious payloads, or compromised accounts have not been publicly disclosed. Defensive actions should include adding www.injectivedesktop.org and its resolving IP 216.150.1.1 to deny‑list rules, updating IDS/IPS signatures to detect HTTP 200 responses from this host, and monitoring for outbound blockchain transaction attempts originating from internal endpoints. Continuous threat‑intel feeds should be consulted for any new indicators of compromise, and any user reports of unauthorized wallet activity should be investigated promptly.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 12.08.2026
10 внешних источников под наблюдением Совпадений нет
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of injectivedesktop.org · checked Mar 25, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание