Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abusecomplaints@markmonitor.com.
The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
phantomeextensionn[.]blogspot[.]ca
“Download Phantom Wallet Extension - Official Website”
phantomeextensionn.blogspot.ca — 未验证. 品牌冒充:Phantom; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 9/91 (alphaMountain.ai, BitDefender, CyRadar, Emsisoft, Fortinet); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. 注册商: MarkMonitor.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain phantomeextensionn.blogspot.ca has been identified as a high-risk brand impersonation threat, specifically targeting the Phantom brand. This domain was designed to deceive users into believing they are accessing the legitimate Phantom Wallet Extension website, thereby compromising their security and potentially leading to credential theft or financial loss.
Technical analysis reveals that this domain was created on February 21, 2026, and resolves to the IP address 172.217.20.129, hosted in the United States under AS15169, associated with Google LLC. The domain's registration was conducted through MarkMonitor, Inc., a registrar often associated with legitimate brand protection, which may have been exploited to lend a veneer of credibility. The domain has been flagged by 11 out of 95 security vendors on VirusTotal, indicating a significant level of detection. Furthermore, it appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL, strengthening the assessment that it poses a considerable threat. The SSL certificate is issued by Google Trust Services, which indicates a higher likelihood of the site appearing legitimate to unsuspecting users.
To mitigate the risks associated with this domain, users and organizations should ensure that they are using security solutions capable of detecting and blocking such threats. Regularly updating security software and employing advanced threat detection systems can help identify and neutralize phishing attempts. Additionally, educating users about the dangers of phishing and the importance of verifying URLs before entering sensitive information can reduce the likelihood of successful impersonation attacks. Organizations should also monitor for the misuse of their brands and work with cybersecurity firms to take down malicious domains promptly.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 5 identified
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
存档证据
证据与外部报告
PD-20260214-E589E7 Recipient: abusecomplaints@markmonitor.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。