coldcard-incident-guide[.]pages[.]dev
“Coldcard 随机数漏洞|应对与长期安全方案”
coldcard-incident-guide.pages.dev — Não verificado. Resumo das evidências: VirusTotal 2/91 (alphaMountain.ai, Forcepoint ThreatSeeker); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. Registrador: Cloudflare Pages.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain coldcard-incident-guide.pages.dev is currently flagged by multiple defensive sources as a phishing‑related indicator. VirusTotal records show the domain has been submitted to 91 AV engines; none of the scanners reported a detection at the time of analysis. While the lack of detections does not constitute a safety assurance, it confirms that the payload or landing page has not yet been identified by mainstream signatures. The domain is listed on a public phishing blocklist maintained by PhishDestroy and appears on one additional security blocklist, indicating that at least two independent threat‑intel feeds have classified it as malicious.
No public Safe Browsing verdict, Open Threat Exchange (OTX) entry, or registrar‑level abuse record is presently published for the domain. Hosting metadata, ASN, country of origin, SSL certificate details, HTTP response codes, and page title have not been disclosed in the current intelligence set, so infrastructure characteristics remain unknown. Consequently, the confidence level of the assessment is limited to the presence of blocklist entries and the VirusTotal scan result.
Defenders should treat the domain as hostile until further forensic evidence is gathered. Recommended actions include adding the domain to local deny lists, configuring web‑filtering solutions to block any HTTP(S) request to the host, and monitoring outbound traffic for connections to the underlying IP address if it becomes known. Continuous re‑evaluation is advised as additional telemetry—such as URL‑based Safe Browsing status, SSL fingerprint, or observed malicious payloads—becomes available.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of coldcard-incident-guide.pages.dev · checked Aug 2, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo