walletsui-people[.]pages[.]dev
“Suspected phishing site | Cloudflare”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
Analysis indicates that the domain walletsui-people.pages.dev was registered on February 21, 2026 via Cloudflare, Inc. The site is associated with a crypto‑scam aimed at impersonating the Sui blockchain brand. The page title returned by the server is “Suspected phishing site | Cloudflare”, and the HTTP response code is 403, suggesting the content is being blocked by Cloudflare’s protective layer. Network resolution points to the IP address 172.66.47.139, which belongs to AS13335 owned by Cloudflare, Inc., and is geolocated in the United States. The domain is protected by HSTS and serves traffic over HTTP/3, confirming the use of modern Cloudflare infrastructure. SSL termination is performed by a certificate issued by Google Trust Services under the WE1 profile, indicating a valid TLS chain but offering no assurance about the underlying content.
Reputation signals are strongly negative. Twelve of ninety‑three security vendors on VirusTotal have flagged the domain, and Google Safe Browsing has classified it as a social‑engineering threat. The domain appears on a single known blocklist and has been actively blocked by PhishDestroy. Gridinsoft’s trust score of 0 / 100 further corroborates the high risk. The site is currently listed as offline, consistent with the “taken offline” status in the intelligence feed.
Defenders should treat the domain as hostile. Immediate actions include adding the domain and its resolving IP address to deny‑list rules on firewalls and DNS filtering solutions, and ensuring endpoint protection products are updated to reflect the VirusTotal detections. Monitoring of Cloudflare‑hosted assets for similar naming patterns is recommended, as the attacker appears to leverage Cloudflare’s free registration to obscure attribution. Because the content of the page has not been captured, analysts should continue to request screenshots or crawls through sandbox environments to verify any payload or credential‑harvesting mechanisms.
Data Coverage
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 11/08/2026
المخطط الزمني للاكتشاف
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of walletsui-people.pages.dev · checked Apr 21, 2026
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب