grasslink[.]pages[.]dev
grasslink.pages.dev की फ़िशिंग और सुरक्षा जाँच
“WALLET FIX”
grasslink.pages.dev — सामग्री अनुपलब्ध (HTTP 502). घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VT 0/91; URLQuery 0; URLScan no malicious verdict; GSB no flag; BL 2 (MetaMask, SEAL); PD 76/100. रजिस्ट्रार: Cloudflare.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
PhishDestroy identifies grasslink.pages.dev as an active credential harvesting phishing domain designed to trick users into submitting sensitive login credentials. This domain leverages Cloudflare Pages to host a deceptive landing page mimicking legitimate login portals, often distributed via phishing campaigns or malvertising. The infrastructure, resolving to 188.114.97.3 with a Let’s Encrypt SSL certificate, adds a veneer of legitimacy, increasing the likelihood of successful deception. Users encountering this domain should treat it as a high-risk threat until further analysis confirms otherwise, as the absence of detections does not equate to safety.
Technical indicators and observed behavior reinforce the need for caution. VirusTotal currently flags 0 out of 95 security engines, indicating a low initial detection rate despite the domain’s malicious intent. Registered through Cloudflare, Inc., this domain operates under Cloudflare Pages, a service frequently abused for phishing due to its free tier and rapid deployment capabilities. While the exact registration date remains unverified, the domain’s active status and low detection rate suggest it is either newly deployed or actively evading detection mechanisms. The combination of a trusted hosting provider, valid SSL certificate, and absence of blocklist entries creates a dangerous profile that necessitates immediate scrutiny.
If you or your organization have interacted with grasslink.pages.dev—whether by visiting the site, entering credentials, or downloading files—take immediate action to mitigate potential risks. First, disconnect any systems that may have been exposed to the domain to prevent lateral movement or further compromise. Next, reset passwords for accounts that share credentials with those potentially entered on the site, prioritizing email, financial, and corporate login credentials. Finally, scan affected devices for malware or unauthorized access using updated endpoint protection tools. Organizations should also consider blocking the domain at the network perimeter and reviewing logs for any signs of associated malicious activity. Proactive monitoring and user awareness training are critical to preventing further exploitation of this and similar threats.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 4 identified
Firebase is a Google-backed application development software that enables developers to develop iOS, Android and Web apps.
firebase.google.com 100% विश्वासHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% विश्वासCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% विश्वासHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% विश्वाससाइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of grasslink.pages.dev · checked May 2, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
इस रिपोर्ट के बारे में: grasslink.pages.dev
यह रिपोर्ट PhishDestroy के लिए उपलब्ध नवीनतम संग्रहीत साक्ष्य प्रस्तुत करती है। स्रोत टाइमस्टैम्प जहां उपलब्ध हों वहां दिखाए जाते हैं; संग्रहण के बाद उपलब्धता और विक्रेता के फैसले बदल सकते हैं।
कैप्चर की गई साइट ने पृष्ठ शीर्षक “WALLET FIX” प्रदर्शित किया।
PhishDestroy ने grasslink.pages.dev को संदिग्ध के रूप में सूचीबद्ध किया है। इसकी जाँच 91 सुरक्षा इंजनों द्वारा की गई थी; स्वचालित फैसले बदल सकते हैं. निगरानी जारी है.
यदि आपको लगता है कि यह सूची ग़लत है, तो एक अपील प्रस्तुत करें। हमारी कार्यप्रणाली के बारे में जानने के लिए, अक्सर पूछे जाने वाले प्रश्न पृष्ठ पर जाएँ।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।