vote-perleslabs[.]pages[.]dev
“Earn Rewards for Training AI with Expert Data | Perle Labs”
साक्ष्य सारांश
PhishDestroy identifies vote-perleslabs.pages.dev as an active crypto drainer posing as a Perles Labs site. The domain leverages a Pages.dev front-end to spoof a legitimate-looking page that prompts wallet connections. Once connected, hidden scripts extract private keys and seed phrases, draining cryptocurrency holdings to attacker-controlled wallets. This model mirrors recent high-profile campaigns targeting DeFi users. Security researchers note the domain’s immediate redirection from phishing links to obfuscated drainer scripts hosted on Cloudflare’s edge network, indicating a deliberately engineered deception pipeline designed for rapid fund exfiltration.
This domain was flagged by PhishDestroy with a risk status of 'active' and a generic phishing type. The threat intelligence shows SSL certification issued by Google Trust Services, though this alone does not validate authenticity. VirusTotal currently reports 0 out of 95 detection engines flagging the domain, suggesting low static signature coverage despite behavioral indicators. The domain is registered through Cloudflare, Inc., resolving to IP 172.66.47.73 and appears on 1 known security blocklist. Blocking by MetaMask further supports suspicions of malicious intent, as the browser extension has flagged the domain for hosting wallet-draining code.
Users who visited vote-perleslabs.pages.dev should immediately disconnect any connected wallets, revoke any unauthorized approvals, and transfer remaining funds to a new, secure wallet. Scan device for malware using reputable antivirus software and clear browser cache and cookies. Report the domain to PhishDestroy and your wallet provider. Avoid reusing seed phrases and ensure 2FA is enabled on all accounts. Exercise extreme caution with any unsolicited links or unexpected wallet connection prompts to prevent further compromise.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Nextron YARA rules | vote-perleslabs.pages.dev/assets/secure.php?req=ping |
malware | PHP webshell obfuscated by encoding of mixed hex and dec |
| Nextron YARA rules | vote-perleslabs.pages.dev/assets/secure.php?req=ping |
malware | Known PHP Webshells which contain unique strings, lousy rule for low hanging fruits. Most are catched by other rules in here but maybe these catch different ver |
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 13/08/2026
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of vote-perleslabs.pages.dev · checked May 14, 2026
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।