smartsprocurement[.]pages[.]dev
“Multichain - Cross-Chain Router Protocol”
Resumo das evidências
This domain hosts a malicious page impersonating a cross-chain protocol interface and is assessed as a credential and crypto asset theft vector. The content is designed to resemble a legitimate Multichain-related application in order to deceive users into connecting wallets or entering authentication data. Once interaction occurs, the page may facilitate unauthorized transaction signing, wallet draining, or credential capture, enabling direct financial loss and account compromise. The infrastructure pattern is consistent with fake dApp frontends used in phishing campaigns targeting Web3 users.
Technical intelligence confirms multiple independent risk signals. VirusTotal reports 16/95 security vendors flagging the domain as malicious. The domain was created on June 14, 2024 and is currently active. It is registered through Cloudflare Pages infrastructure. The page is served with SSL issued by Google Trust Services / WE1 and resolves to IP 172.66.46.213. Additional reputation signals include listing on 5 security blocklists, along with detection by Google Safe Browsing as phishing. These overlapping indicators suggest coordinated abuse of trusted hosting and certificate infrastructure to increase credibility while masking malicious intent.
Users who have interacted with this domain should assume potential compromise of wallet keys or session tokens. Immediate actions include disconnecting any linked wallets, revoking token approvals, and transferring remaining assets to a secure wallet with new seed phrases. Any credentials entered should be treated as exposed and rotated immediately. Systems used to access the site should be scanned for malware or browser-based injection artifacts. Network defenders should block the domain and associated IP 172.66.46.213, and monitor for repeated connections. Given the domain’s continued activity and multi-source detection, ongoing exposure risk remains high and proactive blocking at DNS and browser extension level is recommended.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
6 fontes externas monitoradas Sem correspondência
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
Tecnologias
8 tecnologias identificadas com alta confiança
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo