unlswap[.]org-api-fast-wallet[.]com
“401 Authorization Required”
unlswap.org-api-fast-wallet.com — Nội dung không có sẵn (HTTP 502). Mạo danh thương hiệu: Uniswap; Loại lừa đảo: Crypto Scam. Tóm tắt bằng chứng: VirusTotal 11/93 (alphaMountain.ai, BitDefender, CyRadar, ESET, Forcepoint ThreatSeeker); 1 external blocklist match (ScamSniffer); PhishDestroy score 88/100.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
Analysis of the domain unlswap.org-api-fast-wallet.com, observed on July 25 2026, indicates that it is part of a crypto‑focused brand‑impersonation campaign targeting Uniswap users. The domain was registered on 21 February 2026 and resolves to the IP address 104.21.49.80, which belongs to AS13335 operated by Cloudflare, Inc., located in the United States. HTTP requests to the host return a 401 Authorization Required page title, suggesting that the site is no longer serving malicious content and is currently taken offline. Despite the offline status, the infrastructure remains notable: the domain carries a Gridinsoft trust score of 0 / 100 and is listed on two independent blocklists, PhishDestroy and ScamSniffer, confirming that security vendors have previously observed malicious activity associated with this host.
VirusTotal scans show that 11 of 93 antivirus engines flagged the domain, providing additional corroboration of its abusive nature. The SSL certificate is identified as “WE1”, a low‑reputation certificate commonly seen on fraudulent sites. The campaign’s stated objective is a crypto scam, specifically impersonating Uniswap to lure victims into disclosing private keys or transferring funds. Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any re‑activation of the host, and add the IP address 104.21.49.80 to any threat‑intel feeds that track Cloudflare‑based abuse.
Because the site currently returns a 401 response, the immediate risk of direct credential theft is reduced, but the presence of the domain on blocklists and the observed vendor detections indicate that the underlying phishing kit or infrastructure may be reused elsewhere. Organizations should advise users to verify any Uniswap‑related URLs against official sources and to treat unsolicited wallet‑related communications with suspicion.
Pipeline ứng phó với các mối đe dọa
Trạng thái trong danh sách chặn công khai
Tình báo pháp chứng
Phân tích của VirusTotal
Bằng chứng và các báo cáo bên ngoài
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai