tokens-dapp[.]pages[.]dev
“Easily Manage your Coins and NFTs in one place | TOKEN DAPPS”
tokens-dapp.pages.dev — Não verificado. Tipo de golpe: Brand Impersonation. Resumo das evidências: VirusTotal 3/91 (alphaMountain.ai, ESET, Forcepoint ThreatSeeker); PhishDestroy score 76/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, tokens-dapp.pages.dev, is actively engaged in cryptocurrency wallet credential theft, a form of phishing designed to harvest private keys or recovery phrases from decentralized application users. The infrastructure mimics legitimate token or decentralized finance (DeFi) platforms, likely using social engineering tactics such as fake airdrop claims, wallet upgrades, or token swaps to trick victims into entering sensitive credentials. The domain’s design and naming convention suggest a focus on users of blockchain-based applications, where the loss of credentials can result in immediate and irreversible asset theft. Analysis indicates the domain is hosted through Cloudflare, Inc. (AS13335) and resolves to the IP address 188.114.96.3, located in the United States. Its SSL certificate is issued by Google Trust Services (WE1), a common feature among both legitimate and malicious sites. Despite its active status, the domain has not been flagged by any of the 95 security engines on VirusTotal, though it appears on one security blocklist. The lack of widespread detection suggests either recent deployment or evasion techniques, such as rapid domain rotation or obfuscation of malicious payloads. Users who have interacted with tokens-dapp.pages.dev should immediately revoke any connected wallet permissions and transfer assets to a new, secure wallet. It is critical to check browser extensions and connected applications for unauthorized access, as phishing sites often deploy scripts to extract session tokens or stored credentials. If credentials were entered, assume they are compromised and avoid reusing them. Monitor transaction histories for unauthorized activity and report the domain to relevant security teams or blocklist providers to aid in broader mitigation efforts.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 4 identified
React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 100% de confiançaHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% de confiançaCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% de confiançaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% de confiançaAnálise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of tokens-dapp.pages.dev · checked Jun 25, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo