http://verify-asset.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encoding“Collab.Land Connect”
verify-asset.netlify.app — Nội dung không có sẵn (HTTP 404). Mạo danh thương hiệu: MetaMask. Tóm tắt bằng chứng: VirusTotal 15/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Emsisoft); URLScan malicious verdict; Google Safe Browsing flagged; Spamhaus DBL_ABUSED_PHISH; 2 external blocklist matches (MetaMask, SEAL); CF Radar malicious; PhishDestroy score 95/100. Nhà đăng ký: Netlify.
Phân tích chi tiết của PhishDestroy AI bên dưới được giữ bằng tiếng Anh để bảo toàn hồ sơ pháp chứng gốc.
Analysis of verify-asset.netlify.app confirms active credential phishing infrastructure targeting cryptocurrency wallet users. The domain, hosted on Netlify's platform, resolves to IP address 35.157.26.135 with no assigned nameservers, a configuration often observed in ephemeral phishing deployments. As of July 30, 2026, the site remains operational despite detection by three security blocklists—PhishDestroy, MetaMask, and SEAL—indicating specialized targeting of crypto-related credentials. Google Safe Browsing classifies this domain under social engineering, corroborating the credential harvesting intent.
VirusTotal reports 15 of 91 security vendors flagging the domain, though the specific detection rules or payloads are not detailed in available intelligence. The absence of nameservers may suggest a short-lived campaign or automated provisioning to evade takedowns. No brand name or phishing kit identifier is currently associated with the domain, leaving the exact impersonation target unclear.
Defenders should treat this domain as high-risk for crypto wallet credential theft and prioritize blocking at DNS, proxy, and endpoint levels. Network security teams are advised to monitor for connections to 35.157.26.135 and inspect any associated TLS certificates for further indicators. Given the domain's persistence despite blocklist presence, expect continued rotation of similar Netlify-hosted subdomains in this campaign.
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Độ tin cậy 100%Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com Độ tin cậy 100%JSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com Độ tin cậy 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Độ tin cậy 100%Google PageSpeed Insights — mobile performance audit of verify-asset.netlify.app · checked Jul 30, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://verify-asset.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingNếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayHãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoCác báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiTheo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai