sushiswap-sushi-swap[.]cc
“www.www.sushiswap-sushi-swap.cc”
sushiswap-sushi-swap.cc — 未验证. 品牌冒充:SushiSwap; 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 5/91 (alphaMountain.ai, Chong Lua Dao, Forcepoint ThreatSeeker, Gridinsoft, LevelBlue); URLQuery 3 alerts; PhishDestroy score 65/100. 注册商: NiceNIC.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of sushiswap-sushi-swap.cc indicates a confirmed brand impersonation targeting SushiSwap, a decentralized cryptocurrency exchange. The domain was registered on February 21, 2026, through NiceNIC International Group Co., Limited, and is currently offline. Infrastructure analysis reveals the domain resolves to IP address 172.67.214.170, hosted by Cloudflare in Canada, with nameservers audrey.ns.cloudflare.com and augustus.ns.cloudflare.com. The page title, www.www.sushiswap-sushi-swap.cc, exhibits irregular formatting, a common tactic in phishing domains to create a false sense of legitimacy or confuse users.
Five of 93 security vendors on VirusTotal flagged this domain as malicious, aligning with its presence on the PhishDestroy blocklist, which classifies it as a crypto scam. The domain's creation date, combined with its rapid detection by security vendors, suggests a short-lived but targeted campaign. While the exact content of the site remains unanalyzed due to its offline status, the available evidence—including the domain name structure, blocklist classification, and vendor detections—strongly supports its role in a cryptocurrency-related scam. Defenders should treat this domain as a high-confidence threat.
Network-level blocks at the IP and domain level are recommended, along with monitoring for related infrastructure, such as similarly named domains or shared hosting patterns. Given Cloudflare's frequent use by threat actors to obscure origins, additional scrutiny of domains using the same nameservers or IP range may uncover further malicious activity. No SSL or HTTP status details are available, and further forensic analysis would require access to historical snapshots or logs.
网络安全情报 Registrar context
威胁响应 Pipeline
公共封禁名单状态
Latest Classified Outcome 2026-08-20 02:47:44 UTC
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。