hashpck-en-us[.]pages[.]dev
“HashPack Wallet | Secure Gateway to the Hedera Ecosystem”
hashpck-en-us.pages.dev — Conteúdo indisponível. Tipo de golpe: Seed Phrase Theft. Resumo das evidências: VirusTotal 10/93 (ChainPatrol, BitDefender, Chong Lua Dao, CyRadar, Fortinet); Google Safe Browsing flagged; PhishDestroy score 85/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain is classified as a high-risk phishing site targeting users of the Hedera ecosystem. Analysis indicates it impersonates the legitimate HashPack Wallet interface, presenting a fraudulent login portal to harvest cryptocurrency wallet credentials and private keys. The specific threat involves credential theft through social engineering, leveraging the cloned interface of a trusted cryptocurrency wallet service. Infrastructure analysis reveals the domain hashpck-en-us.pages.dev was registered on February 21, 2026, through Cloudflare, Inc. It resolves to IP address 172.66.44.251, hosted on AS13335 (Cloudflare, Inc.) in the United States. The SSL certificate is issued by Google Trust Services (WE1). Security telemetry shows the domain appears on 1 blocklist, with VirusTotal detecting malicious activity from 10 out of 95 security vendors. Google Safe Browsing also flags this domain as phishing. The page title, 'HashPack Wallet | Secure Gateway to the Hedera Ecosystem,' directly mimics the legitimate service to deceive users. Mitigation requires immediate blocking of the domain and its resolving IP (172.66.44.251) at the network perimeter. Security teams should deploy indicators of compromise (IOCs) across endpoint detection and response (EDR) systems, firewalls, and email gateways to prevent access. Users who may have interacted with the domain should revoke any active sessions, rotate credentials, and verify wallet integrity for potential unauthorized transactions. Cryptocurrency holders are advised to cross-check wallet addresses and enable multi-factor authentication (MFA) on all related accounts. Monitoring for secondary phishing attempts via email or social media is recommended, as attackers may reuse stolen credentials for follow-up attacks.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência forense
Tecnologias · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of hashpck-en-us.pages.dev · checked Mar 6, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo