http://verify-asset.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encoding“Collab.Land Connect”
Analysis of verify-asset.netlify.app confirms active credential phishing infrastructure targeting cryptocurrency wallet users. The domain, hosted on Netlify's platform, resolves to IP address 35.157.26.135 with no assigned nameservers, a configuration often observed in ephemeral phishing deployments. As of July 30, 2026, the site remains operational despite detection by three security blocklists—PhishDestroy, MetaMask, and SEAL—indicating specialized targeting of crypto-related credentials. Google Safe Browsing classifies this domain under social engineering, corroborating the credential harvesting intent.
VirusTotal reports 15 of 91 security vendors flagging the domain, though the specific detection rules or payloads are not detailed in available intelligence. The absence of nameservers may suggest a short-lived campaign or automated provisioning to evade takedowns. No brand name or phishing kit identifier is currently associated with the domain, leaving the exact impersonation target unclear.
Defenders should treat this domain as high-risk for crypto wallet credential theft and prioritize blocking at DNS, proxy, and endpoint levels. Network security teams are advised to monitor for connections to 35.157.26.135 and inspect any associated TLS certificates for further indicators. Given the domain's persistence despite blocklist presence, expect continued rotation of similar Netlify-hosted subdomains in this campaign.
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
İlk kayıtlı değer: Erişilebilir
0 → 1
Erişilebilir → Erişilemiyor
5 yüksek güvenli teknoloji belirlendi
Google PageSpeed Insights — mobile performance audit of verify-asset.netlify.app · checked Jul 30, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://verify-asset.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingHesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraŞüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirSon kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleCanlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin