thegraph-frontend-3f1[.]pages[.]dev
“Blockchain Deploy | All in one API Deployment Tool for web3 developers”
証拠の概要
PhishDestroy identifies thegraph-frontend-3f1.pages.dev as an active drainer phishing domain posing under investigation generic phishing risk. This domain attempts to impersonate The Graph project’s official frontend interface, aiming to trick users into entering private wallet keys or seed phrases into a fraudulent web form. No known drainer kit fingerprint has been extracted yet, but the landing page mimics legitimate The Graph styling and workflows to enhance credibility. The domain leverages modern hosting and SSL infrastructure to appear legitimate at first glance, which increases the risk of successful user deception. This domain resolves to IP address 188.114.97.3 and is served through Cloudflare Pages, registered via Cloudflare, Inc. with a Google Trust Services SSL certificate. As of the latest scan, VirusTotal reports 0 detections out of 95 engines, indicating it remains undetected by most antivirus and threat intelligence platforms. The domain appears to be recently created, though the exact registration date is not publicly disclosed. Google Safe Browsing (GSB) has not yet flagged the site, and no blocklist entries were found in major threat feeds. These technical indicators suggest a newly deployed infrastructure optimized to evade early detection. At present, the domain remains active and unblocked across most security platforms, posing a moderate-to-high risk to unwary users. PhishDestroy recommends immediate network-level and endpoint blocking via DNS sinkholing or firewall rules targeting 188.114.97.3 and the domain itself. Users should avoid accessing this domain and verify any The Graph-related links via official project channels. The ongoing investigation continues to assess the full scope of this campaign, including potential ties to broader credential harvesting or fund draining operations. Remaining risk is elevated due to low detection rates and the use of reputable hosting and SSL providers to lend false legitimacy.
Data Coverage
ネットワークセキュリティインテリジェンス
脅威対応 Pipeline
ブロックリストの確認範囲
監視対象の外部情報源 10 件 · 保存スナップショット 2026年8月11日
VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of thegraph-frontend-3f1.pages.dev · checked Mar 31, 2026
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください