Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Phishing Domain/URL/IP(s):
Impersonated domain
Describe the issue
Most are exactly the same method of attack described in #694 and #703
Related external source
https://www.virustotal.com/gui/domain/coinomi.is
https://www.virustotal.com/gui/domain/phamton.is
https://www.virustotal.com/gui/domain/safepal.llc
https://www.virustotal.com/gui/domain/sun-io.app
https://www.virustotal.com/gui/domain/exodus.farm
https://www.virustotal.com/gui/domain/exodus.kim
https://www.virustotal.com/gui/domain/exodus.llc
https://www.virustotal.com/gui/domain/safepal.bid
https://www.virustotal.com/gui/domain/safepal.one
https://www.virustotal.com/gui/domain/safepal.page
https://www.virustotal.com/gui/domain/safepal.zip
https://www.virustotal.com/gui/domain/tokenpocket.biz
https://www.virustotal.com/gui/domain/safepal.com.mx
https://www.virustotal.com/gui/domain/tradingview.la
https://www.virustotal.com/gui/domain/tokenpocket.ink
https://www.virustotal.com/gui/domain/exodus.cab
https://www.virustotal.com/gui/domain/safepal.co.com
https://www.virustotal.com/gui/domain/safepal.com.mx
https://www.virustotal.com/gui/domain/metamask-extension.app
https://www.virustotal.com/gui/domain/metamask-extension.net
https://www.virustotal.com/gui/domain/safepal.me
https://www.virustotal.com/gui/domain/safepal.one
https://www.virustotal.com/gui/domain/web-safepal.com
https://www.virustotal.com/gui/domain/safepal.ooo
https://www.virustotal.com/gui/domain/targern.com
https://www.virustotal.com/gui/domain/tokenpocket.cam
https://www.virustotal.com/gui/domain/tokenpocket.how
https://www.virustotal.com/gui/domain/tokenpocket.ink
https://www.virustotal.com/gui/domain/tokenpocket.llc
https://www.virustotal.com/gui/domain/v2-safepal.com
https://www.virustotal.com/gui/domain/app.phanntom.pro
https://www.virustotal.com/gui/domain/ledjer.cc
https://www.virustotal.com/gui/domain/legder.cc
https://www.virustotal.com/gui/domain/ff-info-online.com
https://www.virustotal.com/gui/domain/trezor-wallet.fr
https://www.virustotal.com/gui/domain/trustwallet.ing
https://www.virustotal.com/gui/domain/phantom.ong
Takedown requests from APVA (soon to be available from Netcraft as well):
https://incident.antiphish.org/9f5a1f2766df/
https://incident.antiphish.org/744d18b52175/
https://incident.antiphish.org/76a22a206cfe/
https://incident.antiphish.org/9ee1f640ba7e/
https://incident.antiphish.org/24e870e1c7c7/
https://incident.antiphish.org/8e381377fdfa/
https://incident.antiphish.org/e109a967f45e/
https://incident.antiphish.org/82e3bbbb55bc/
https://incident.antiphish.org/e5be41a3a0f9/
https://incident.antiphish.org/df9b8ddaf181/
https://incident.antiphish.org/0b7444a6c993/
https://incident.antiphish.org/2c405b447f0b/
https://incident.antiphish.org/f97afd1e7a8b/
https://incident.antiphish.org/68469656666f/
Screenshot
Click to expand
pls check incident antiphish and netcraft pages for screenshots