proposals-curves[.]network
“Account Suspended”
proposals-curves.network — Contenido no disponible (HTTP 502). Suplantación de marca: Curve; Tipo de estafa: Generic Phishing. Resumen de las pruebas: VirusTotal 15/93 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, CyRadar); 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 100/100.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
The domain proposals-curves.network was registered on 21 February 2026 and is currently listed as offline with an HTTP response indicating the page title "Account Suspended". DNS resolution points to the IPv4 address 213.111.154.75, which belongs to the network operator SOLLUTIUM EU Sp z.o.o. (ASN 43641) located in the Netherlands. The host is associated with a low SSL trust rating (R10) and receives a Gridinsoft score of 0 out of 100 as well as a Scamadviser rating of 1 out of 100, both indicating a high likelihood of malicious intent.
VirusTotal analysis records 15 detections out of 93 scanning engines, reinforcing the suspicion that the domain is used for malicious purposes. The domain appears on four independent security blocklists and is explicitly blocked by PhishDestroy, Polkadot, Enkrypt, and Codeesura, demonstrating consensus among threat‑intel providers that the site is unsafe. The brand target is identified as Curve, confirming that the infrastructure is designed for brand impersonation attacks against Curve users. No additional content has been captured beyond the generic "Account Suspended" title, so the exact phishing landing page or credential‑harvesting mechanisms remain unknown.
Defenders should continue to deny network traffic to 213.111.154.75, add proposals-curves.network to local blocklists, and monitor for any resurgence of the domain or related subdomains. Users should be warned not to click links that reference this domain, and any email or messaging campaigns that claim to originate from Curve but contain the domain should be treated as fraudulent. Ongoing surveillance of the hosting ASN and the four blocklists is recommended to detect potential re‑use of the infrastructure for future impersonation campaigns.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Inteligencia forense
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.