MALICIOUS — CRITICAL
Verifica phishing e sicurezza per chefpal-app.pages.dev
chefpal-app[.]
This domain is flagged as a high-risk brand impersonation threat targeting SafePal, a cryptocurrency wallet provider.
- VirusTotal
- 3/91
- Blocklists
- No stored match
- Disponibilità
- Ultimo attivo conosciuto · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
chefpal-app.pages.dev — Ultimo attivo conosciuto (HTTP 200). Simulazione del marchio: SafePal; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 3/91 (alphaMountain.ai, Fortinet, LevelBlue); PhishDestroy score 76/100. Registrar: Cloudflare Pages.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
This domain is flagged as a high-risk brand impersonation threat targeting SafePal, a cryptocurrency wallet provider. The site presents itself as the official SafePal Wallet portal, likely designed to harvest user credentials or facilitate unauthorized transactions. Analysis indicates the threat type aligns with crypto credential theft, a common precursor to account takeover and asset drainage. Infrastructure analysis reveals the domain chefpal-app.pages.dev was registered through Cloudflare Pages on May 06, 2026, resolving to IP address 188.114.96.3, geolocated to Cloudflare infrastructure in Canada. The SSL certificate is issued by Google Trust Services (WE1). VirusTotal detection shows 1 out of 95 security vendors flagging the domain as malicious. The page title, 'SafePal Wallet – Manage Your Crypto Portfolio Safely,' directly mimics the legitimate SafePal branding. The domain appears on one security blocklist and is currently active, with no takedown observed. Mitigation requires immediate blocking of the domain and its resolving IP (188.114.96.3) at the network perimeter. Organizations should update endpoint protection rules to detect and prevent access to chefpal-app.pages.dev. Users should be alerted to verify domain authenticity before entering credentials, particularly for crypto-related services. If credentials were entered, immediate password reset and wallet migration to a new seed phrase are recommended. Monitoring for unauthorized transactions on any linked accounts is critical.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Copertura dei dati12 recorded checks
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
Analisi di VirusTotal
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.