bridge-package[.]pages[.]dev
Verificação de phishing e segurança de bridge-package.pages.dev
“CODE COMPILER”
bridge-package.pages.dev — Conteúdo indisponível (HTTP 502). Tipo de golpe: Crypto Drainer. Resumo das evidências: VirusTotal 0/91; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, bridge-package.pages.dev, is under investigation for operating a crypto wallet drainer scam classified as a delivery-themed fraud. Analysis indicates the site employs social engineering tactics, presenting itself as a package tracking or delivery service to trick users into connecting their cryptocurrency wallets. No specific drainer kit or brand impersonation has been confirmed at this stage, though the infrastructure aligns with known wallet-draining campaigns targeting decentralized finance (DeFi) users. Infrastructure analysis reveals the domain is hosted on Cloudflare’s content delivery network, resolving to the IP address 172.66.46.249. VirusTotal detection metrics show 0/95 security vendors flagging the domain as malicious, indicating it has not yet been widely recognized by threat intelligence platforms. Registration details confirm Cloudflare, Inc. as the registrar, though no creation date is publicly available due to the domain’s subdomain status under pages.dev. Google Safe Browsing (GSB) does not currently list the domain, and no blocklist entries have been recorded across major threat feeds. The domain remains active as of this report, with no takedown or mitigation actions observed. Response recommendations include monitoring for wallet-draining scripts, particularly those targeting MetaMask, Trust Wallet, or other browser-based crypto wallets. Network defenders should implement DNS-based blocking for 172.66.46.249 and the domain itself, while users should verify delivery-related communications through official channels. The lack of detections on VirusTotal underscores the need for behavioral analysis, as the domain may evade signature-based detection due to its recent deployment.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo