spooky-swap[.]net
“www.www.spooky-swap.net”
spooky-swap.net — Помилка сервера (HTTP 502). Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 10/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 6 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 80/100. Реєстратор: NiceNIC.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies spooky-swap.net as an elevated-risk cryptocurrency scam site actively targeting users under the guise of a decentralized exchange. This domain operates under a first-party deception strategy, impersonating legitimate DeFi platforms to lure victims into connecting wallets and approving malicious transaction requests. The site claims to offer token swaps but is designed to drain funds through hidden approvals and front-end manipulation common in exit scams. It presents an immediate financial threat to cryptocurrency users seeking yield or liquidity services.
This domain was flagged by 10 out of 95 VirusTotal security vendors, indicating partial detection across major antivirus and threat intelligence platforms. It was registered through NICENIC INTERNATIONAL GROUP CO., LIMITED and resolves to IP address 188.114.96.3. The domain was created on April 15, 2025, and currently displays page title www.www.spooky-swap.net, suggesting obfuscation attempts via redundant subdomain structure. Additionally, it has been blocked by MetaMask and SEAL, two prominent security tooling platforms in the cryptocurrency ecosystem. The site holds an SSL certificate issued by Google Trust Services, which does not imply legitimacy in this context, and it appears on two known security blocklists, further corroborating its malicious nature.
Users should immediately cease any interaction with spooky-swap.net and verify any similar-looking URLs against official project websites. To mitigate risk, revoke any unwittingly granted wallet permissions via tools like Etherscan or Revoke.cash. If funds or assets were connected, review wallet transactions for suspicious approvals or transfers. Report the domain to security platforms (e.g., MetaMask, SEAL, VirusTotal) and local cybercrime units. Always access DeFi platforms through verified bookmarks or official links, and enable wallet transaction simulation tools where available. Stay vigilant against domains using name similarity or thematic branding to exploit trust.
Розвіддані з мережевої безпеки Registrar context
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | www.www.spooky-swap.net |
malicious | Sinkholed |
| DNS4EU | www.www.spooky-swap.net |
malicious | Sinkholed |
| DNS4EU | spooky-swap.net |
malicious | Sinkholed |
| Hagezi Threat Feed | spooky-swap.net |
malicious | Sinkholed |
| DNS4EU | www.spooky-swap.net |
malicious | Sinkholed |
| Hagezi Threat Feed | www.spooky-swap.net |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-13 03:22:56 UTC
Технології · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога