MALICIOUS — CRITICAL
Kiểm tra lừa đảo và bảo mật cho cakewallet-com.us
cakewallet-com[.]
PhishDestroy identifies cakewallet-com.us as an active crypto drainer posing as the legitimate Cake Wallet service.
- VirusTotal
- 13/91
- Blocklists
- 2 · MetaMask, SEAL
- sẵn có
- Che giấu · có thể truy cập · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
cakewallet-com.us — Che giấu · có thể truy cập (HTTP 502). Loại lừa đảo: Credential Phishing. Tóm tắt bằng chứng: VirusTotal 13/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 1 alert; 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. Nhà đăng ký: PDR.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
Evidence Analysis
PhishDestroy identifies cakewallet-com.us as an active crypto drainer posing as the legitimate Cake Wallet service. This domain leverages the trust of the Monero-focused wallet community to harvest private keys and seed phrases, enabling direct theft of user funds. The threat is immediate and material: visitors risk irreversible financial loss if they authenticate or restore wallets via this counterfeit site. The domain’s behavior aligns with automated drainer scripts that monitor clipboard activity and replace wallet addresses with attacker-controlled destinations.
This domain was flagged by PhishDestroy’s seed d9f3e1 and is currently under investigation. Intelligence confirms the following technical indicators: VirusTotal detection rate is 2/95 (0%), indicating no AV signatures yet; the domain resolves to IP 76.76.21.21; it was registered on April 30, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com; and it uses a Let’s Encrypt SSL certificate. The page title mimics legitimate Cake Wallet documentation: “Cake Wallet Guide Desk: Independent Login, Restore, and Monero Setup Guides,” suggesting a spoofed support portal designed to deceive users seeking help.
Mitigation begins with immediate blocking: add cakewallet-com.us and 76.76.21.21 to network and DNS blocklists. Users should only access Cake Wallet via official domains (cake-wallet.com) and verify TLS certificate chains. Never enter seed phrases or private keys into any web form. Enable hardware wallet signing and use Monero-specific address verification tools. Report this domain to your security team and to Cake Wallet support for takedown coordination. Monitor wallet addresses used in transactions linked to this domain for suspicious inflows.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Phạm vi dữ liệu12 recorded checks
Tình báo an ninh mạng
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | cakewallet-com.us |
malicious | Sinkholed |
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Công nghệ · 2 identified
Vercel is a cloud platform for static frontends and serverless functions.
vercel.com Độ tin cậy 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Độ tin cậy 100%Phân tích của VirusTotal
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of cakewallet-com.us · checked May 4, 2026
Bằng chứng và các báo cáo bên ngoàiIndependent lookups and source reports
PD-20260504-D87946 Recipient: abuse@vercel.com Victim safety and official reportingImmediate actions and verified reporting channels
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.