tesrrrsfg[.]pages[.]dev
Análisis de phishing y seguridad de tesrrrsfg.pages.dev
“Mobile Wallet Restore | Best Cryptocurrency Wallet | Open protocol for connec...”
tesrrrsfg.pages.dev — Accesible · acceso restringido (HTTP 403). Suplantación de marca: Avalanche; Tipo de estafa: Crypto Drainer. Resumen de las pruebas: VirusTotal 13/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 89/100. Registrador: Cloudflare.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain is flagged for brand_impersonation phishing, specifically targeting users of the Avalanche cryptocurrency platform. The site masquerades as a legitimate wallet recovery or management service, presenting itself under the title 'Mobile Wallet Restore | Best Cryptocurrency Wallet | Open protocol for connecting Wallets.' Such impersonation attempts are designed to deceive users into disclosing sensitive credentials, private keys, or other authentication details, leading to unauthorized access to digital assets or financial theft. The domain’s content and structure are engineered to exploit trust in the Avalanche brand, a common tactic in cryptocurrency-related phishing campaigns. Analysis indicates the domain was registered on February 02, 2024, through Cloudflare, Inc., and resolves to the IP address 172.66.47.123, hosted on infrastructure belonging to AS13335 (Cloudflare, Inc.) in the United States. The SSL certificate is issued by Google Trust Services (WE1), a legitimate provider, which does not mitigate the malicious intent of the domain. As of the latest scans, 13 out of 95 security vendors on VirusTotal have flagged this domain as malicious. Additionally, the domain appears on two security blocklists, including PhishDestroy and PhishingDB, further corroborating its classification as a phishing threat. The use of Cloudflare’s infrastructure is notable, as it provides anonymity and resilience against takedowns, a tactic frequently observed in phishing operations. Users who visited tesrrrsfg.pages.dev or interacted with its content should take immediate action to mitigate potential risks. First, cease all interaction with the domain and avoid entering any credentials or sensitive information. If any login details, private keys, or recovery phrases were submitted, assume they are compromised and revoke access to associated accounts or wallets. Monitor Avalanche wallet activity for unauthorized transactions and consider transferring assets to a new, secure wallet if compromise is suspected. Report the incident to the targeted platform’s security team and relevant cybersecurity authorities to aid in tracking and mitigating the threat. Additionally, review connected devices for malware or unauthorized access, as phishing sites may deploy additional payloads.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % de confianzaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Evidencias archivadas
Análisis del rendimiento del sitio
Google PageSpeed Insights — mobile performance audit of tesrrrsfg.pages.dev · checked Apr 24, 2026
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.