wlfilibertyfinances[.]xyz
“World Liberty Financial - Inspired by Trump, Powered by USD1”
wlfilibertyfinances.xyz — Контент недоступний (HTTP 502). Зведення доказів: VirusTotal 12/93 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, Forcepoint ThreatSeeker); 4 external blocklist matches; PhishDestroy score 86/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy has identified the domain wlfilibertyfinances.xyz as a high-risk generic phishing threat, specifically designed to mimic the World Liberty Financial platform. This phishing site exploits the association with Donald Trump and the USD1 stablecoin to lure victims into revealing cryptocurrency credentials or sensitive financial information. The domain is now offline, but its past activity poses a significant risk to users who may have encountered it.
Technical analysis reveals that this domain was created on February 21, 2026, and resolves to the IP address 172.67.205.21. It is listed on five security blocklists, and VirusTotal reports that 12 out of 95 security vendors flagged it as malicious. The SSL certificate used is of type WE1, which is not a widely recognized certificate authority, further indicating suspicious intent. These indicators, combined with its short lifespan and targeted branding, confirm a deliberate phishing operation aimed at cryptocurrency users.
Users who have visited wlfilibertyfinances.xyz should immediately change any passwords or wallet keys entered on the site and enable two-factor authentication on all financial accounts. Since this is a generic phishing threat, the primary risk is credential theft and unauthorized access to crypto wallets. PhishDestroy recommends running a full antivirus scan and monitoring accounts for unusual activity. No legitimate financial platform would request sensitive information through such a domain, and users should always verify URLs before engaging.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога