sale-monprotocol[.]pages[.]dev
“MON Protocol Community Presale”
sale-monprotocol.pages.dev — Não verificado. Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 1/91 (Forcepoint ThreatSeeker); PhishDestroy score 76/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Analysis of sale-monprotocol.pages.dev indicates a cryptocurrency presale phishing domain, currently under investigation. The domain was registered on June 13, 2026, through Cloudflare, Inc., and resolves to IP address 188.114.96.3. The page title, "MON Protocol Community Presale," suggests a focus on cryptocurrency or token presale activity, though the exact content and functionality of the site remain unconfirmed. Infrastructure analysis reveals the use of Cloudflare hosting and security services, including HSTS and HTTP/3, alongside third-party libraries such as Unpkg, SweetAlert2, jsDelivr, and crypto-js, which may be employed to enhance site interactivity or obfuscate malicious behavior. The domain appears on one security blocklist, specifically PhishDestroy, and has been assigned a trust score of 0/100 by Gridinsoft. No vendor detections were reported at the time of the most recent scan, though this absence does not confirm the domain's safety. The SSL certificate is issued by Google Trust Services, a common provider for both legitimate and malicious domains. Given the domain's recent registration and association with cryptocurrency presale themes, defenders should treat it as a potential phishing threat targeting users involved in token sales or decentralized finance (DeFi) projects. Further investigation is required to determine the domain's exact mechanisms, such as wallet-draining scripts, fake token contracts, or credential harvesting. Network defenders are advised to monitor for connections to 188.114.96.3 and consider blocking the domain at perimeter security controls pending additional analysis. No confirmed brand impersonation or specific phishing kit has been identified at this stage.
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 8 identified
SweetAlert2 is a JavaScript library that provides customisable, visually appealing, and responsive alert and modal dialog boxes for web applications.
sweetalert2.github.io 100% de confiançaJSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo