doc-trust-ask[.]pages[.]dev
“doc-trust-ask.pages.dev”
Сохранённое наблюдение
Зафиксированное различие заголовков
This domain, doc-trust-ask.pages.dev, operates as a crypto drainer phishing site designed to compromise digital wallet credentials and exfiltrate cryptocurrency assets. Analysis indicates the infrastructure presents itself as a legitimate document verification or trust service portal, likely impersonating blockchain security protocols or decentralized application interfaces. The page employs social engineering tactics, including fake transaction prompts and wallet connection requests, to trick users into authorizing malicious smart contract interactions that facilitate unauthorized fund transfers from connected wallets. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on October 29, 2025, and currently resolves to the IP address 188.114.97.3. Despite its recent creation, the domain has already been flagged on three security blocklists, including MetaMask's threat intelligence feed, PhishDestroy, and SEAL. Detection metrics show 0 out of 95 engines on VirusTotal currently identify the domain as malicious, suggesting either evasion techniques or delayed detection by security vendors. The site employs HTTP/3 and HSTS protocols, with an SSL certificate issued by Google Trust Services, further attempting to mimic legitimate service infrastructure. Users who visited doc-trust-ask.pages.dev and connected a wallet or entered credentials should immediately revoke all active smart contract approvals through their wallet interface. It is recommended to transfer remaining assets to a new wallet address and monitor transaction histories for unauthorized activity. Browser data should be cleared to remove any stored session tokens or cached malicious content. Given the domain's offline status, affected users should remain vigilant for follow-up phishing attempts through alternative channels, as threat actors may attempt to re-engage compromised targets.
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
Источников: 10 · синхронизировано 10.08.2026
Хронология обнаружения
Сохранённые наблюдения в хронологическом порядке.
-
VirusTotal
VirusTotal: 0 → 4
-
VirusTotal
VirusTotal: 4 → 0
Сохранённый снимок
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
Криминалистическая аналитика
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of doc-trust-ask.pages.dev · checked Jun 26, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание