shushi---cdn---swap[.]webflow[.]io
“Swap | Sushi”
shushi---cdn---swap.webflow.io — Неперевірений. Уособлення бренду: SushiSwap; Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); CF Radar malicious; PhishDestroy score 95/100. Реєстратор: Webflow.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, shushi---cdn---swap.webflow.io, is flagged as an active crypto drainer scam specifically designed to impersonate the legitimate decentralized exchange SushiSwap. Analysis indicates the threat actor has deployed a malicious interface mimicking the authentic SushiSwap platform, likely utilizing a drainer kit to siphon cryptocurrency assets from victims' wallets upon connection. The page title, 'Swap | Sushi,' directly corresponds to the branding of the legitimate SushiSwap platform, a tactic employed to deceive users into interacting with the fraudulent site. Infrastructure analysis reveals the domain is hosted on Webflow's content delivery network, resolving to the IP address 104.18.36.248. The domain is flagged by 14 out of 95 security vendors on VirusTotal, indicating a moderate-to-high detection rate. The SSL certificate is issued by Google Trust Services, providing a false sense of security to potential victims. No historical registration data is publicly available due to Webflow's hosting model, which obscures traditional WHOIS records. Google Safe Browsing currently lists this domain as unsafe, and it appears on multiple blocklists, including those maintained by cryptocurrency security firms and threat intelligence platforms. As of the latest verification, shushi---cdn---swap.webflow.io remains active and continues to pose a significant risk to users. The domain's infrastructure, combined with its impersonation of a well-known DeFi platform, suggests a targeted campaign aimed at cryptocurrency holders. Users are strongly advised to avoid interacting with this domain and to verify the authenticity of any platform before connecting wallets or entering sensitive information. Wallet providers and security platforms are encouraged to add this domain to their blocklists to mitigate further risk. The remaining threat level is classified as high due to the domain's active status and the irreversible nature of cryptocurrency transactions.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Webflow is Software-as-a-Service (SaaS) for website building and hosting.
webflow.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of shushi---cdn---swap.webflow.io · checked Jun 30, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога