1inchswap[.]us
证据摘要
This domain is flagged as a high-risk brand impersonation threat designed to exploit users of the 1inch decentralized exchange platform. Analysis indicates the infrastructure was specifically crafted to mimic legitimate 1inch services, likely with the intent to facilitate unauthorized transactions or credential harvesting. The domain exhibits characteristics consistent with crypto-focused social engineering campaigns, where attackers leverage trusted brand identities to manipulate victims into divulging sensitive information or approving malicious blockchain interactions. Infrastructure analysis reveals the domain 1inchswap.us was registered on February 21, 2026, though no active hosting IP has been publicly attributed at this time. Detection metrics confirm widespread recognition of its malicious nature: the domain is flagged by 11 out of 95 security vendors on VirusTotal and appears on five distinct security blocklists. Registrar details remain undisclosed, but the domain's rapid inclusion in multiple threat intelligence feeds suggests a coordinated effort to distribute the impersonation scheme. Trust scores across detection platforms uniformly classify this domain as malicious, with no legitimate use case identified. Mitigation against this brand impersonation threat requires immediate action from both individual users and platform operators. Users who may have interacted with 1inchswap.us should revoke any connected wallet permissions and audit recent blockchain transactions for unauthorized activity. Platform administrators are advised to proactively monitor for similar domain registrations (e.g., typosquatting variants) and implement DNS-based blocking for confirmed malicious domains. Given the offline status of this specific domain, continued vigilance is necessary, as threat actors frequently rotate infrastructure to evade detection. Organizations should integrate real-time threat intelligence feeds to identify and neutralize emerging impersonation attempts targeting their user base.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
监控中的外部数据源 4 个 无匹配
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控