dweb-evn[.]pages[.]dev
فحص التصيد والأمان للنطاق dweb-evn.pages.dev
“Bitcoin STX - The Revolution In Web3 Defi Trading Is Here!”
dweb-evn.pages.dev — آخر نشاط معروف (HTTP 200). انتحال العلامة التجارية: Bitcoin; نوع الاحتيال: Brand Impersonation. ملخص الأدلة: VirusTotal 7/91 (alphaMountain.ai, BitDefender, Fortinet, G-Data, Google Safe Browsing); URLQuery 1 alert; PhishDestroy score 86/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
Analysis shows that dweb-evn.pages.dev is an active domain created on April 28, 2026 and hosted behind Cloudflare infrastructure, resolving to IP address 188.114.97.3 located in Canada. The site presents an HTTP 200 response and serves a page titled "Bitcoin STX - The Revolution In Web3 Defi Trading Is Here!" indicating a brand‑impersonation attempt targeting Bitcoin users. The domain uses Cloudflare’s DNS (amalia.ns.cloudflare.com, jerome.ns.cloudflare.com) and presents a TLS certificate issued by a widely trusted authority, with HSTS and HTTP/3 enabled. Technical fingerprints reveal the presence of Bootstrap and standard Cloudflare security headers. The domain is listed on a security blocklist and has a Gridinsoft trust score of 0 out of 100, reinforcing the suspicion of malicious intent. While the site has been scanned by multiple malware engines without a positive detection, the lack of detections does not confirm safety. Defenders should block the domain at perimeter defenses, monitor DNS queries for the associated IP and nameservers, and treat any communications referencing the Bitcoin brand from this host as potentially fraudulent. Further investigation of the site’s content and any payloads it may deliver is recommended to determine the full scope of the threat.
نطاق تغطية البيانات12 recorded checks
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | maps.googleapis.com/maps-api-v3/api/js/64/9c/common.js |
audit | Hunting_JS_WebAssembly |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 4 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com ثقة 100٪HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of dweb-evn.pages.dev · checked Apr 28, 2026
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.