blockchainbets-app[.]pages[.]dev
Проверка домена blockchainbets-app.pages.dev на фишинг и безопасность
“BCB Staking v2”
blockchainbets-app.pages.dev — Последний известный активный (HTTP 200). Тип мошенничества: Crypto Gambling. Сводка доказательств: VirusTotal 4/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Gridinsoft, LevelBlue); 1 external blocklist match (ScamSniffer); PhishDestroy score 77/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, blockchainbets-app.pages.dev, operates as a crypto staking drainer phishing site targeting users of the BCB token platform. The page presents itself as "BCB Staking v2," a fraudulent version of a legitimate staking service, designed to trick victims into connecting cryptocurrency wallets. Once connected, the site executes unauthorized transactions, draining funds from the victim’s wallet by exploiting smart contract interactions or signature requests. The threat specifically targets users familiar with decentralized finance (DeFi) platforms, leveraging social engineering tactics to mimic legitimate staking interfaces.
Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on October 03, 2024, and currently resolves to the IP address 172.66.47.180, located in Canada. Despite its recent creation, the domain has already been flagged on 2 security blocklists, including PhishDestroy and ScamSniffer. VirusTotal reports 0 detections out of 95 security engines, indicating the site remains undetected by most automated scanning tools. The SSL certificate is issued by Google Trust Services (WE1), a common provider for both legitimate and malicious domains, which does not inherently indicate trustworthiness in this context.
Users who have visited blockchainbets-app.pages.dev and connected a wallet should immediately revoke any active smart contract approvals associated with the site. This can be done using blockchain explorers or wallet management tools that support token approval revocation. Affected individuals should also monitor their wallet transaction history for unauthorized transfers and consider transferring remaining assets to a new wallet if suspicious activity is detected. Due to the low detection rate on VirusTotal, traditional antivirus or endpoint protection may not flag this threat, emphasizing the need for manual verification of connected sites and wallet permissions.
Данные сетевой безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Криминалистическая аналитика
Casino / Gambling License Verification
Технологии · 7 identified
Popular CSS framework for responsive, mobile-first web development.
Fast CDN for everything on npm — serves raw files from npm packages.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Доказательства и внешние отчеты
“AngelDrain”
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание