nodeprotocol[.]pages[.]dev
“Suspected phishing site | Cloudflare”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
This domain is flagged as a high-risk brand impersonation threat designed to deceive users of the Sei blockchain platform. Analysis indicates the domain was specifically crafted to mimic legitimate Sei infrastructure, likely for credential harvesting or fraudulent token transfers. The threat type aligns with social engineering tactics, as confirmed by Google Safe Browsing's SOCIAL_ENGINEERING classification, and is consistent with observed patterns in cryptocurrency-related phishing campaigns. Infrastructure analysis reveals the domain nodeprotocol.pages.dev was registered through Cloudflare, Inc. and currently resolves to the IP address 188.114.97.3. The domain was created on March 31, 2026, an anomalous future date suggesting potential manipulation of registration records. Security vendor detections include 13/95 flags on VirusTotal, while Gridinsoft assigns a trust score of 0/100. The domain appears on three security blocklists and is actively blocked by multiple cryptocurrency wallet protection systems. The SSL certificate is issued by Google Trust Services, and the page title was observed as 'Suspected phishing site | Cloudflare,' indicating hosting platform detection. Mitigation requires immediate blocking of the domain and associated IP address across all network security controls. Organizations should implement DNS sinkholing for 188.114.97.3 and add nodeprotocol.pages.dev to web filtering policies. Given the brand impersonation targeting Sei, security teams should monitor for similar domains using 'sei' or 'protocol' variations registered through Cloudflare. User awareness training should emphasize verification of domain authenticity before connecting wallets or entering credentials. Incident responders should preserve logs containing this domain for potential forensic analysis, particularly transactions linked to the IP 188.114.97.3 during the period of activity.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 10/08/2026
المخطط الزمني للاكتشاف
-
VirusTotal
14 ← 13
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of nodeprotocol.pages.dev · checked Jun 26, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب