billionswallethub[.]pages[.]dev
“Billion Wallet Hub”
billionswallethub.pages.dev — Контент недоступен (HTTP 502). Тип мошенничества: Crypto Drainer. Сводка доказательств: VirusTotal 4/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, Gridinsoft); 1 external blocklist match (ScamSniffer); PhishDestroy score 83/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, billionswallethub.pages.dev, is flagged as a crypto drainer targeting cryptocurrency wallet credentials. Analysis indicates the site mimics legitimate wallet services under the name 'Billion Wallet Hub,' likely designed to execute unauthorized transactions by tricking users into connecting their wallets. The infrastructure appears to deploy a drainer kit, though the specific variant remains unconfirmed due to obfuscation techniques observed in preliminary scans. Infrastructure analysis reveals the domain was registered on April 29, 2026, through Cloudflare, Inc., and resolves to the IP address 188.114.97.3, hosted in Canada under Cloudflare’s network. The SSL certificate is issued by Let’s Encrypt (serial number E7), a common choice for malicious domains due to its free and automated issuance process. VirusTotal reports 5 out of 95 security vendors flagging the domain as malicious, while it appears on 2 security blocklists. Google Safe Browsing (GSB) has not yet listed the domain, indicating a potential gap in detection coverage. As of the latest verification, billionswallethub.pages.dev remains active, with no takedown or sinkholing observed. Response actions by security entities such as PhishDestroy and ScamSniffer have blocked access, but the domain continues to resolve and may still pose a risk to unprotected users. Remaining risk is classified as high due to the domain’s persistence, the financial nature of the threat, and the use of Cloudflare’s infrastructure to mask hosting details. Users are advised to block the domain at the network level, revoke any connected wallet permissions, and monitor for unauthorized transactions. Security teams should update detection rules to include this domain and its associated IP in threat intelligence feeds.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% уверенностиCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% уверенностиHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% уверенностиАнализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of billionswallethub.pages.dev · checked Apr 29, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание