uniswap[.]org[.]in
“uniswap.org.in”
uniswap.org.in — Неперевірений. Уособлення бренду: Uniswap; Тип шахрайства: Crypto Scam. Зведення доказів: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CyRadar); URLQuery 3 alerts; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 98/100. Реєстратор: Hosting Concepts.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, uniswap.org.in, is identified as a brand impersonation threat specifically targeting Uniswap, a decentralized cryptocurrency exchange. Analysis indicates the site was designed to mimic the legitimate Uniswap platform, likely to deceive users into exposing sensitive information or transferring crypto assets to attacker-controlled wallets. No direct evidence of a crypto drainer kit was observed, but the infrastructure aligns with common brand impersonation tactics used in cryptocurrency-related fraud schemes. Infrastructure analysis reveals multiple technical indicators of compromise. The domain was registered on February 21, 2026, through Hosting Concepts B.V. d/b/a Registrar.eu, and resolves to the IP address 144.31.244.3, hosted under AS213877 (U1 DIGITAL SERVICES LTD) in Germany. Security vendors on VirusTotal flagged the domain with a detection score of 17/95, while it appears on two independent blocklists, including PhishDestroy and PhishingDB. The SSL certificate is issued under the default TRAEFIK DEFAULT CERT, a common red flag in fraudulent domains. No entries were found in Google Safe Browsing at the time of assessment. The domain is currently offline, reducing immediate risk to users. However, the elevated risk level remains due to the domain's recent creation, blocklist presence, and historical association with brand impersonation. Users who may have interacted with this domain should review wallet transactions for unauthorized activity and revoke any connected smart contract approvals. Organizations should monitor for similar domains using the same registrar or hosting provider, as threat actors often reuse infrastructure for subsequent campaigns. Proactive DNS sinkholing and registrar-level suspensions are recommended to prevent future abuse.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | uniswap.org.in |
malicious | Sinkholed |
| Hagezi Threat Feed | uniswap.org.in |
malicious | Sinkholed |
| DNS4EU | uniswap.org.in |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
“Hello , i wanted to swap tokens but it seems like it was a scam page from unilabs, i opened the third page in metamask and then i accepted and then i couldnt swap Can you help me please ?”
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога