appkit-web-wallet[.]pages[.]dev
فحص التصيد والأمان للنطاق appkit-web-wallet.pages.dev
“Web Wallet”
appkit-web-wallet.pages.dev — آخر نشاط معروف (HTTP 200). نوع الاحتيال: Wallet/seed Phishing. ملخص الأدلة: VirusTotal 2/91 (ESET, Kaspersky); PhishDestroy score 71/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies appkit-web-wallet.pages.dev as an active crypto drainer masquerading as a web wallet service. The domain is part of a campaign leveraging Cloudflare Pages to deploy a malicious drainer kit designed to steal cryptocurrency assets from unsuspecting users. The threat actor behind this infrastructure employs deceptive domain names and SSL certificates from trusted providers like Google Trust Services to lend credibility to their fraudulent site. The drainer kit, identified under seed 7fdbc0, is engineered to intercept and divert cryptocurrency transactions to attacker-controlled wallets, posing a significant risk to users interacting with web-based wallet services.
This domain resolves to IP address 172.66.47.147 and is registered through Cloudflare, Inc., utilizing Cloudflare Pages for hosting. VirusTotal currently shows 0 detections out of 95 scanners, indicating a low detection rate despite its malicious intent. The SSL certificate is issued by Google Trust Services, which may further deceive users into trusting the fraudulent site. The domain’s infrastructure is designed to evade early detection, relying on legitimate-looking infrastructure to bypass security measures. Given the lack of blocklist entries and the absence of detections on VirusTotal, this domain remains a high-risk threat with potential for widespread abuse.
The domain appkit-web-wallet.pages.dev is currently active and under investigation by threat intelligence teams. Immediate response actions include blacklisting the domain and its associated IP, and updating security controls to block access. Users are advised to avoid interacting with this domain or any services linked to it, particularly those requesting cryptocurrency transactions or wallet connections. The remaining risk is high due to the domain’s low detection rate and the use of trusted infrastructure. Continuous monitoring and proactive threat hunting are recommended to mitigate the impact of this campaign.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of appkit-web-wallet.pages.dev · checked Apr 9, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب