walletsblockchain[.]netlify[.]app
walletsblockchain.netlify.app 网络钓鱼与安全检查
“Site not found”
walletsblockchain.netlify.app — 内容不可用 (HTTP 404). 品牌冒充:MetaMask. 证据摘要: VirusTotal 10/91 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, Fortinet); Google Safe Browsing flagged; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 80/100. 注册商: Netlify.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain walletsblockchain.netlify.app has been identified as an active crypto drainer platform. Infrastructure analysis shows the hostname resolves to the IPv4 address 63.176.8.218, which is part of Netlify’s hosting environment. The domain was originally registered on May 08, 2018 through Netlify and has persisted for several years, indicating a stable foothold. Reputation services have flagged the site: Google Safe Browsing classifies it as social engineering, and three independent security blocklists currently list the domain.
VirusTotal reports that 10 of 91 scanned security vendors have raised detections against the host, confirming malicious behavior. Additional defensive products, including PhishDestroy, MetaMask, and SEAL, have explicitly blocked the domain, reinforcing the consensus that it is being used to illicitly acquire cryptocurrency assets. The threat is catalogued as a crypto drainer, and the risk level is assessed as high. While the exact phishing page content and harvest mechanisms have not been publicly disclosed, the convergence of multiple detections across vendor feeds and blocklists provides strong confidence that the site is engaged in credential or private‑key theft aimed at crypto wallets.
Defenders should add the domain and its resolving IP to deny‑list rules across firewalls, DNS filters, and endpoint protection suites. Monitoring for outbound connections to 63.176.8.218 and related Netlify sub‑domains is recommended. Organizations should also educate users about unsolicited wallet‑related URLs, especially those leveraging the “walletsblockchain” naming pattern, and enforce multi‑factor authentication for wallet access. Continuous threat‑intel feeds should be consulted for any updates on the infrastructure, including potential shifts to new hosting endpoints.
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
所用技术 · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of walletsblockchain.netlify.app · checked Jul 29, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。