open-seaa-logn[.]pages[.]dev
“OpenSea™ Login — Secure Wallet Access”
ملخص الأدلة
Analysis of open-seaa-logn.pages.dev indicates a brand‑impersonation campaign targeting OpenSea users. The domain was registered on February 21 2026 and is hosted behind Cloudflare, Inc., using the nameservers alina.ns.cloudflare.com and shane.ns.cloudflare.com. DNS resolution points to IP 172.66.44.131, an address owned by AS13335 Cloudflare, Inc. and geolocated to the United States. The site served an HTTPS response secured by a Google Trust Services certificate (WE1) and enforced HSTS with HTTP/3 support, but the HTTP status returned was 403, suggesting the content is no longer publicly reachable.
The page title observed during scanning was "OpenSea™ Login — Secure Wallet Access," matching the declared scam type of wallet/seed phishing and confirming the OpenSea brand as the impersonated target. Google Safe Browsing flagged the URL for social engineering, and Gridinsoft assigned a trust score of 0 / 100. PhishDestroy listed the domain as blocked, and VirusTotal reported a single detection out of 93 security vendors, indicating at least one vendor identified malicious behavior.
The domain appears on one external blocklist and is currently marked as offline, limiting further content analysis. Defenders should add the domain to URL filtering and DNS blocklists, monitor for similarly structured subdomains under pages.dev, and reinforce user awareness about unsolicited OpenSea login requests. Continuous observation of Cloudflare‑hosted impersonation infrastructure is recommended, as the low trust score and single vendor detection suggest the campaign may be in early stages or using minimal obfuscation techniques.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
المخطط الزمني للاكتشاف
الاستخبارات الجنائية الرقمية
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of open-seaa-logn.pages.dev · checked Mar 27, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب