connection-node[.]surge[.]sh
“Blockchain Rectification”
Resumen de las pruebas
connection-node.surge.sh is currently active and classified as a high‑risk generic phishing site delivering a crypto‑scam campaign. The domain was registered on 2025‑08‑09 through the Surge.sh service and uses the default Surge.sh authoritative name servers ns1.surge.sh and ns2.surge.sh. DNS resolution points to 188.166.132.94, an address owned by AS14061 DigitalOcean, LLC and geolocated to the Netherlands. The web server returns HTTP 200 and presents the page title “Blockchain Rectification”, consistent with the reported crypto‑scam typology. The site is listed on one blocklist and has been blocked by PhishDestroy. VirusTotal analysis shows a single positive detection out of ninety‑five scanners, and Gridinsoft assigns a trust score of 0 / 100. The TLS certificate is issued by Sectigo Limited under a Sectigo RSA Domain Validation CA. While the content of the landing page has not been publicly disclosed, the observable infrastructure strongly indicates malicious intent. Defenders should block the domain and its resolving IP at network perimeters, monitor for outbound connections to the host, and include the certificate fingerprint in threat‑intel feeds. Ongoing surveillance is advised to detect any pivot or payload changes.
Data Coverage
Proceso de respuesta ante amenazas Pipeline
Cobertura de listas de bloqueo
10 fuentes externas supervisadas · instantánea del 11/08/2026
10 fuentes externas supervisadas Sin coincidencias
Cronología de detección
-
Cloudflare Radar
Análisis de Cloudflare Radar almacenado · Abrir análisis
Análisis de VirusTotal
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of connection-node.surge.sh · checked Mar 2, 2026
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.