game-platform-download[.]pages[.]dev
“Slot Mate - Vegas Slot Casino - Apps on Google Play”
game-platform-download.pages.dev — Conteúdo indisponível. Representação da marca: Google; Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 1/94 (Netcraft); PhishDestroy score 58/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies game-platform-download.pages.dev as a live crypto-draining phishing domain masquerading as a legitimate gaming platform installer. This site leverages a *.pages.dev subdomain under Cloudflare Pages to distribute a suspected drainer kit targeting cryptocurrency wallets. No specific drainer family was publicly tagged in VirusTotal or threat intelligence feeds at time of discovery, indicating either a newly deployed kit or one employing novel obfuscation techniques to evade detection. The operator’s choice of a Cloudflare-backed domain suggests an intent to blend with legitimate development infrastructure, exploiting the platform’s reputation to bypass network defenses.
Technical indicators confirm elevated risk despite mild detection counts. VirusTotal currently shows 0 positive detections out of 95 engines (VT score: 1/95) as of seed 629426, indicating zero sandbox detonations or signature matches. The domain resolves to IP 188.114.96.3 via Cloudflare, Inc. registration. Google Safe Browsing (GSB) status remains unflagged, and public blocklist aggregation (such as PhishTank or OpenPhish) lists no current entries. The domain was registered through Cloudflare, Inc., a known privacy-protecting registrar that inhibits WHOIS transparency. Creation date is unavailable due to Cloudflare’s WHOIS privacy, but the SSL certificate issued by Google Trust Services (GTS) indicates active TLS deployment since detection timestamp.
Current status is active and under investigation by multiple threat intelligence teams. The domain remains online with all services operational, including SSL and CDN delivery. No takedown requests have been publicly filed as of seed 629426, suggesting ongoing exploitation cycles. While the immediate risk is moderate due to zero detections and Cloudflare’s resilient hosting, the absence of mitigation increases exposure for users downloading “game platform installers” from unofficial sources. Remaining risk includes potential drainer payload evolution, lateral distribution via social engineering, or integration into broader malware campaigns. Users are strongly advised to avoid this domain, verify software sources via official channels, and enable wallet protection features such as transaction simulation and hardware wallet isolation.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência forense
Tecnologias · 4 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Conversion-tracking pixel by Meta — logs page views and custom events to Facebook/Instagram ad accounts.
www.facebook.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of game-platform-download.pages.dev · checked Mar 30, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo