1inch-network-dhs[.]pages[.]dev
Análisis de phishing y seguridad de 1inch-network-dhs.pages.dev
“1inch Network | The Leading DeFi Protocols & DAO Community”
1inch-network-dhs.pages.dev — Accesible · acceso restringido (HTTP 403). Suplantación de marca: 1inch; Tipo de estafa: Crypto Drainer. Resumen de las pruebas: VT 3/93 (ADMINUSLabs, ChainPatrol, Fortinet); URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 2 (MetaMask, SEAL); PD 71/100. Registrador: Cloudflare.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
1inch-network-dhs.pages.dev is a tenant hostname on Cloudflare, not a separately registered domain. PhishDestroy first recorded this hostname on Feb 24, 2026. The hostname explicitly references 1inch; stored content metadata identifies the same apparent target. The captured page title is “1inch Network | The Leading DeFi Protocols & DAO Community”. Content analysis also recorded brand signals for Across, Arbitrum, Avalanche, Base, BNB Chain, Ethereum, Foundation, Optimism, Polygon, and Solana. The stored content classification is crypto drainer. Evidence score: 71/100 (high).
Positive sources (3): VirusTotal, MetaMask, and SEAL. VirusTotal recorded 3 detections among 93 engines: ADMINUSLabs, ChainPatrol, Fortinet on Jul 18, 2026 at 18:45 UTC. MetaMask and SEAL listed the hostname in the external-blocklist snapshot on Aug 7, 2026 at 18:20 UTC. Other stored checks: URLQuery recorded no positive detection. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC. URLScan completed without a malicious verdict on Mar 25, 2026 at 11:22 UTC.
An access-restricted HTTP 403 response was recorded on Aug 7, 2026 at 01:00 UTC. Cloudflare is the hosting platform for this tenant, not its registrar. At collection time, the hostname resolved to 172.66.44.124 on AS13335 (CLOUDFLARENET - Cloudflare, Inc., US). The associated network metadata labels the endpoint as AS13335 Cloudflare, Inc. in San Francisco, US. This is shared platform infrastructure; the IP and ASN are hosting context, not attribution to unrelated tenants. The stored server header is cloudflare. DOM analysis completed on Apr 23, 2026 at 03:20 UTC; stored DOM score 15/100. The evidence archive retains 2 visual captures from PhishDestroy and URLScan. IoC extraction completed on Aug 2, 2026 at 04:08 UTC; stored 0 format-validated wallet addresses and 1 Telegram indicator. The platform TLS certificate was issued by Google Trust Services / WE1 with validity through May 23, 2026; checked Mar 15, 2026 at 05:48 UTC.
Content indicators and positive source findings support a 1inch-themed crypto drainer classification.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 4 identified
RxJS is a reactive library used to implement reactive programming to deal with async implementation, callbacks, and event-based programs.
reactivex.io 100 % de confianzaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % de confianzaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of 1inch-network-dhs.pages.dev · checked Apr 28, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.