MALICIOUS — CRITICAL
meteoraswap[.]pages[.]dev
PhishDestroy identifies meteoraswap.pages.dev as an active Ethereum phishing domain designed to steal cryptocurrency assets through fraudulent swap interfaces.
- VirusTotal
- 8/92
- Blocklists
- 1 · ScamSniffer
- Ketersediaan
- Dapat dijangkau · akses dibatasi · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
meteoraswap.pages.dev — Dapat dijangkau · akses dibatasi (HTTP 403). Peniruan identitas merek: Ethereum; Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 8/92 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Fortinet); URLQuery 1 alert; URLScan malicious verdict; 1 external blocklist match (ScamSniffer); PhishDestroy score 84/100. Registrar: Cloudflare.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
PhishDestroy identifies meteoraswap.pages.dev as an active Ethereum phishing domain designed to steal cryptocurrency assets through fraudulent swap interfaces. The site mimics legitimate decentralized exchange (DEX) platforms to trick users into connecting wallets and approving malicious transactions. Security scanners currently show 0 detections out of 95 engines on VirusTotal, indicating this threat remains undetected by most antivirus solutions as of investigation time.
This domain was flagged through multiple threat intelligence sources including Cloudflare hosting records, Google Trust Services SSL certification, and blocklist inclusion by ScamSniffer. The site resolves to IP address 188.114.96.3 and operates under Cloudflare, Inc. registration – a common tactic among malicious actors to hide true ownership. While the exact creation date remains unverified, the presence of a Google-issued SSL certificate suggests recent deployment, as these certificates typically require domain validation that occurs at or near registration time.
If you visited meteoraswap.pages.dev, immediately disconnect your wallet from any connected dApps using your wallet’s interface. Scan your wallet for unauthorized token approvals or transactions using tools like Revoke.cash or Etherscan’s token approval checker. Consider transferring remaining assets to a new wallet with a different address, and enable hardware wallet protections if available. Report the domain to your wallet provider and relevant phishing databases like ScamSniffer to help protect other users.
Cakupan data13 recorded checks
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | meteoraswap.pages.dev |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 4 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of meteoraswap.pages.dev · checked May 17, 2026
Analisis Konfigurasi Situs
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.