VirusTotal
13 / 95
w.unieswap.financial — İçerik kullanılamıyor. Marka kimliğine bürünme: MetaMask; Dolandırıcılık türü: Crypto Scam; Drainer: Angel Drainer. Kanıt özeti: VirusTotal 13/95 (alphaMountain.ai, BitDefender, CRDF, CyRadar, Fortinet); URLScan malicious verdict; 1 external blocklist match (ScamSniffer); PhishDestroy score 100/100.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, w.unieswap.financial, operates as a crypto drainer with high-risk classification. It currently remains offline but was actively impersonating MetaMask, a widely used cryptocurrency wallet, to execute unauthorized fund transfers from victims' accounts. The threat leverages social engineering tactics to trick users into connecting their wallets, enabling malicious scripts to siphon assets without consent. Analysis indicates the domain was flagged by 10 of 95 security vendors on VirusTotal, resolving to the IP address 188.114.97.3, hosted under AS13335 (Cloudflare, Inc.). Infrastructure review confirms it employed the Angel Drainer kit, a known toolset for cryptocurrency theft. The domain appears on two security blocklists, and no valid SSL certificate was detected. Registrar details and creation date remain undisclosed, but the IP geolocation points to the United States. Detection by multiple security engines underscores its malicious intent. As of the latest assessment, w.unieswap.financial has been taken offline, though residual risks may persist. Users are advised to verify wallet connections exclusively through official MetaMask channels and avoid interacting with domains mimicking legitimate services. Security teams should update blocklists to include this domain and its associated IP, monitor for related infrastructure, and educate users on recognizing crypto drainer tactics. Immediate revocation of any prior connections to this domain is strongly recommended.
Bu ana bilgisayar için saklanmış tarayıcı-karşı-tarayıcı gözlemleri ile Keitaro tarzı trafik dağıtım sistemleri için gerçek zamanlı parmak izi kontrolü.
Tarayıcı notu: unavailable: raw=connection_error; http=0; via=http_proxy; error=SOCKSHTTPConnectionPool(host='w.unieswap.financial', port=80): Max retries exceeded with url: / (Caused by NewConnection
Edge-IP itibarı bu etki alanıyla ilişkilendirilmez.
Location describes the IP network.
13 recorded events. These records describe collected evidence, outgoing notifications and publication; they do not confirm a complete investigation or a takedown.
We scan suspicious URLs, inspect public results and send evidence through the appropriate abuse-reporting channels. The dated events above show what is recorded for this domain. The directory below explains the wider workflow.
Capture the rendered page, requests and visible infrastructure.
Compare the available engine results and retain the analysis timestamp.
Check whether Google currently lists the URL as unsafe.
Inspect a public scan and its recorded network and classification data.
Look for indicator references and related community intelligence.
Compare archived captures and preserve historical context.
Look for matching indicators and associated threat records.
Inspect certificate records and related hostnames.
Compare security resolver responses and record observed blocking.
Inspect the public DNS, TLS, HTTP and technology surface.
Security services used for scanning, reputation checks and reporting are listed below. A service being listed is not evidence that it received, accepted or acted on this particular domain. Recorded submissions appear in the notification history above.
79 kayıtlı benzer alan adı
1 topluluk üyesi tarafından bildirildi; ilk görülme 18.09.2025
Bu alanla etkileşimde bulunduysanız, kişisel bilgilerinizi girdiyseniz veya bir kripto para cüzdanı bağladıysanız hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Template-based draft · optional AI wording assistance requires separate consent
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraŞüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirSon kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleCanlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin
Tahmini $51 billion 2024 yılında yasadışı kripto cüzdanlarına aktı (source). Eğer şu ile etkileşim kurduysanız w.unieswap.financial — hemen harekete geçin.
Şu kaynağa göre FBI, en önemli ayrıntılar işlem verileridir:
0x5856...35985)w.unieswap.financial)Tüm ayrıntıları bilmeseniz bile — yine de şikayette bulun. Kısmi bilgiler de soruşturmalara yardımcı olmaktadır.
A report is not a guarantee of recovery or investigation, but prompt, accurate transaction data can help authorities and service providers trace the incident.