app-strx-finance-2b7[.]pages[.]dev
“STRX.FINANCE - DAPP”
app-strx-finance-2b7.pages.dev — Contenido no disponible. Suplantación de marca: Coingecko; Tipo de estafa: Crypto Drainer. Resumen de las pruebas: VirusTotal 7/91 (alphaMountain.ai, BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 71/100. Registrador: Cloudflare Pages.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
app-strx-finance-2b7.pages.dev is a tenant hostname on Cloudflare, not a separately registered domain. PhishDestroy first observed the hostname on Aug 7, 2026. Stored content metadata identifies Coingecko as the apparent target. The captured page title is “STRX.FINANCE - DAPP”. Page analysis recorded additional brand references to Compound, Justlend, Telegram, and Tron. Stored page analysis classifies the content as crypto drainer. Current evidence score: 71/100 (critical).
One source contains a positive finding: VirusTotal. VirusTotal recorded 7 detections among 91 engines: alphaMountain.ai, BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data, Sophos on Aug 15, 2026 at 04:25 UTC. Non-positive and contextual checks: The separate external-blocklist snapshot contained no matches on Aug 15, 2026 at 18:20 UTC. Google Safe Browsing returned no flag on Aug 15, 2026 at 13:39 UTC. URLScan completed without a malicious verdict (score 0) on Aug 8, 2026 at 03:30 UTC.
No conclusive timestamped HTTP response is stored. Cloudflare is the hosting platform for this tenant, not its registrar. At collection time, the hostname resolved to 172.66.44.165 on AS13335 (CLOUDFLARENET - Cloudflare, Inc., US). The IP and ASN identify shared Cloudflare infrastructure, not the tenant operator. DOM analysis on Aug 7, 2026 at 18:20 UTC returned 68/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and Cloudflare Radar. IoC extraction on Aug 8, 2026 at 04:00 UTC retained 0 format-validated wallet addresses and 1 Telegram indicator. The platform TLS certificate was issued by Google Trust Services with validity through Sep 11, 2026; checked Aug 7, 2026 at 19:02 UTC.
Stored content provides classification context, but only one source contains a positive finding.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 7 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org 100 % de confianzaHotjar is a suite of analytic tools to assist in the gathering of qualitative data, providing feedback through tools such as heatmaps, session recordings, and surveys.
www.hotjar.com 100 % de confianzaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % de confianzaGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100 % de confianzaCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100 % de confianzaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of app-strx-finance-2b7.pages.dev · checked Aug 7, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.