MALICIOUS — CRITICAL
aispa[.]uk
This domain, aispa.uk, is confirmed to host a Web3 crypto drainer phishing operation targeting users of decentralized applications and cryptocurrency wallets.
- VirusTotal
- 3/91
- Blocklists
- 1 · ScamSniffer
- Доступність
- Прикритий · доступний · HTTP 404
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
aispa.uk — Прикритий · доступний (HTTP 404). Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); 1 external blocklist match (ScamSniffer); cloaking observed; PhishDestroy score 81/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
This domain, aispa.uk, is confirmed to host a Web3 crypto drainer phishing operation targeting users of decentralized applications and cryptocurrency wallets. The site presents itself as 'AISPA — The AI Security Layer for the Next Era of Web3,' a fabricated security service designed to deceive users into connecting their wallets via malicious smart contract interactions. Once connected, the embedded scripts execute unauthorized transactions, draining funds from the victim’s wallet without consent. The attack vector leverages social engineering tactics, exploiting trust in AI and Web3 security branding to facilitate financial theft. Analysis indicates the domain was registered on April 14, 2026, through Cloudflare, Inc., and resolves to the IP address 216.150.1.1. It is flagged by 3 out of 95 security vendors on VirusTotal, with detections including phishing and malicious content classifications. The domain appears on two independent security blocklists and is actively blocked by PhishDestroy and ScamSniffer. Infrastructure analysis reveals the use of Node.js, React, and Next.js frameworks, alongside Vercel hosting and a Let's Encrypt SSL certificate, which are commonly observed in both legitimate and malicious Web3 applications. The Gridinsoft trust score of 0/100 further corroborates the domain’s malicious intent. Users who visited aispa.uk or interacted with its content are advised to immediately revoke any connected wallet permissions via their wallet interface or a blockchain explorer. All connected devices should undergo a full antivirus scan to detect potential secondary infections. If cryptocurrency transactions were initiated, victims should report the incident to their wallet provider and relevant blockchain analytics platforms for transaction tracing. Additionally, monitor all linked accounts for unauthorized access or transactions, and consider migrating assets to a new wallet if compromise is confirmed. Future interactions with Web3 applications should be restricted to verified, audited platforms with established reputations.
Обсяг даних12 recorded checks
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 6 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100% впевненостіReact is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% впевненостіVercel is a cloud platform for static frontends and serverless functions.
vercel.com 100% впевненостіNext.js is a React framework for developing single page Javascript applications.
nextjs.org 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of aispa.uk · checked Jun 26, 2026
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260504-AD5781 Recipient: abuse@vercel.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.