phantomse[.]vip
Перевірка домену phantomse.vip на фішинг і безпеку
“Phantom”
phantomse.vip — Контент недоступний (HTTP 502). Уособлення бренду: Phantom; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 17/95 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Cluster25); URLQuery 100 det.; URLScan malicious verdict; Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Реєстратор: Dynadot.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies phantomse.vip as a high-risk brand impersonation threat specifically targeting the Phantom cryptocurrency wallet brand. This is not a generic phishing domain but a calculated impersonation designed to trick Phantom users into revealing sensitive credentials or private keys. The domain's sole purpose appears to be harvesting login information or seed phrases from unsuspecting victims.
Technical analysis reveals that phantomse.vip was created on February 21, 2026, and registered through Dynadot LLC. It resolves to IP address 203.168.129.149 and holds an SSL certificate issued to Internet Widgits Pty Ltd, a common placeholder that adds a veneer of legitimacy. VirusTotal data shows 17 out of 95 security vendors flagging this domain as malicious, and it appears on three security blocklists. Google Safe Browsing specifically flags it for phishing activity. The page title is simply "Phantom," further reinforcing the deceptive intent. The domain is currently offline, indicating active takedown efforts.
Users who may have interacted with phantomse.vip should immediately change their Phantom wallet passwords and enable two-factor authentication if available. Scan all devices with updated antivirus software and monitor for unauthorized transactions. Because brand impersonation targets specific credentials, affected users should also revoke any permissions granted to suspicious dApps and consider migrating funds to a new wallet. PhishDestroy recommends reporting any related phishing URLs to Google Safe Browsing and the Phantom support team to help prevent future attacks.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 4 identified
Progressive JavaScript framework for building user interfaces.
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of phantomse.vip · checked Mar 1, 2026
Докази та зовнішні звіти
PD-20260211-CB2882 Recipient: abuse@dynadot.com Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога