nogasfees[.]netlify[.]app
“Trust Wallet Assets Verification”
ملخص الأدلة
PhishDestroy identifies nogasfees.netlify.app as an active crypto drainer campaign using a fraudulent web interface to trick users into connecting cryptocurrency wallets and approving malicious transaction approvals. The domain leverages the Netlify hosting platform to deploy a convincing fake GasFee service portal, aiming to siphon digital assets under the guise of legitimate transaction fee settlements. This campaign was first flagged by PhishDestroy’s c18414 seed on 2024-05-12 and has since remained active with no detections on VirusTotal as of the latest scan.
Technical analysis confirms this domain resolves to IP address 63.176.8.218 and is registered through Netlify, a legitimate cloud platform exploited for hosting malicious content. At the time of analysis, the domain shows 0 detections out of 95 VirusTotal engines, indicating it has evaded mainstream detection engines. Additionally, the domain uses a valid SSL certificate issued by DigiCert Inc., which enhances its appearance of legitimacy while concealing malicious payload delivery. Current threat intelligence suggests this domain has not yet been added to major browser blocklists or threat intelligence feeds, increasing its reach potential among unsuspecting users.
Users who have accessed nogasfees.netlify.app should immediately disconnect any connected wallets, revoke any unauthorized transaction approvals through their wallet interface, and scan their device using reputable security software. If any transactions were authorized or funds were transferred, report the incident to your wallet provider and relevant cryptocurrency exchanges. Do not enter credentials, approve transactions, or interact with this domain further. If you suspect exposure, use PhishDestroy’s verification tool to confirm safety before proceeding with any blockchain-related actions.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | nogasfees.netlify.app/main.js |
malware | Detects file containing Telegram Bot API |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
التقنيات
حُدّدت ٤ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of nogasfees.netlify.app · checked May 17, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب