dapp-g0mp90q5z-klimadao[.]vercel[.]app
“Klima Protocol | Open Infrastructure for Carbon Markets”
dapp-g0mp90q5z-klimadao.vercel.app — Прикритий · доступний. Тип шахрайства: Investment Scam. Зведення доказів: VirusTotal 3/91 (ChainPatrol, alphaMountain.ai, Forcepoint ThreatSeeker); 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 98/100. Реєстратор: Vercel.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies dapp-g0mp90q5z-klimadao.vercel.app as an active phishing domain masquerading as a legitimate Klimadao decentralized application (DApp). The site leverages the trusted Vercel.app domain hosting service to impersonate official Klimadao infrastructure, aiming to harvest user credentials and cryptocurrency wallet private keys under the guise of a climate-focused DeFi platform. This domain was flagged with an elevated risk level and remains active despite limited detection coverage. Security analysis shows it resolves to IP 64.29.17.67 and is registered through Vercel Inc., a legitimate hosting provider often abused by threat actors. Only 1 out of 95 VirusTotal security vendors currently detect this phishing attempt, highlighting the stealthy nature of this campaign. The domain employs a Google Trust Services SSL certificate to enhance credibility, while its subdomain structure (klimadao.vercel.app) attempts to exploit brand confusion with the legitimate klimadao.com platform. Users who visited this fake DApp should immediately disconnect from the site and revoke any permissions granted to connected wallets. Scan all connected devices for malware using reputable antivirus tools, as phishing pages often deploy keyloggers or browser extensions to steal credentials. Report the domain to your antivirus provider and avoid interacting with any subsequent communications from this source. Always verify DApp URLs through official Klimadao channels before entering sensitive information.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 6 identified
JavaScript runtime built on Chrome V8 engine for server-side development.
JavaScript library for building user interfaces with component-based architecture.
Cloud platform for frontend deployment, optimized for Next.js.
React framework for production with hybrid static and server rendering.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Module bundler for modern JavaScript applications.
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of dapp-g0mp90q5z-klimadao.vercel.app · checked Mar 31, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога