open-slush-wallet[.]pages[.]dev
“Slush Wallet | Secure Crypto Wallet for Web3 and DeFi”
Observation enregistrée
Contraste de titres observé
Résumé des preuves
This domain open-slush-wallet.pages.dev was observed hosting a wallet‑seed phishing page that mimics a crypto wallet service, as indicated by the page title “Slush Wallet | Secure Crypto Wallet for Web3 and DeFi”. The site was registered on 21 February 2026 and is served through Cloudflare’s network (AS13335, United States). DNS resolution points to IP 188.114.96.3, and the TLS certificate is issued by Google Trust Services under the WE1 root, confirming the use of legitimate‑looking HTTPS. HTTP responses return 403, suggesting the content is currently inaccessible; the domain is reported offline and has been taken down.
Security telemetry shows the domain is flagged by Google Safe Browsing for social engineering, appears on one external blocklist, and is blocked by PhishDestroy. Nine of ninety‑three VirusTotal scanners have reported detections, and the Gridinsoft trust score is 0 / 100, reinforcing the malicious classification. The infrastructure employs HSTS and HTTP/3, typical of modern abuse campaigns hosted on Cloudflare. The registrar information lists Cloudflare, Inc., and the authoritative nameservers are razvan.ns.cloudflare.com and marjory.ns.cloudflare.com.
No additional technical artefacts such as malware payloads or command‑and‑control endpoints have been disclosed. Defenders should add the domain and its resolving IP to block lists, monitor for any resurgence of the hostname, and enforce outbound filtering for connections to Cloudflare‑hosted IPs that exhibit similar TLS profiles. Continuous observation of Google Safe Browsing and VirusTotal updates is recommended to capture any new detections. Incident response teams should treat any credential or seed phrase submissions to this domain as compromised and advise affected users to rotate credentials and generate new seed phrases.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
10 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Analyse forensique
Technologies
3 technologies identifiées avec une forte confiance
Analyse VirusTotal
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of open-slush-wallet.pages.dev · checked Apr 13, 2026
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif