inceptionlrt[.]pages[.]dev
Проверка домена inceptionlrt.pages.dev на фишинг и безопасность
“Inception | Bridge”
inceptionlrt.pages.dev — Последний известный активный (HTTP 200). Олицетворение бренда: MetaMask; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 3/91 (ADMINUSLabs, alphaMountain.ai, Gridinsoft); URLQuery 1 alert; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 89/100. Регистратор: Cloudflare.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy identifies inceptionlrt.pages.dev as a high-risk cryptocurrency phishing domain actively targeting users through a deceptive Bridge interface. The page title “Inception | Bridge” is a deliberate mimic of legitimate services, luring victims into connecting wallets or transferring funds to attacker-controlled addresses. Blocked by MetaMask and SEAL, this domain poses an immediate threat to cryptocurrency users seeking bridge interfaces. Users who interact risk irreversible fund loss due to wallet compromise or direct asset theft under the guise of token conversion or liquidity provision. This domain was flagged by PhishDestroy with a high-risk classification and remains active across multiple detection layers. It is registered through Cloudflare, Inc., resolves to IP 172.66.44.169, and holds a valid SSL certificate issued by Google Trust Services. VirusTotal shows only 1 out of 95 security engines currently detecting the threat, with the domain appearing on 2 public blocklists including SEAL and MetaMask’s internal filters. Despite its low detection rate, the domain’s infrastructure and behavioral indicators align with active phishing campaigns designed to exploit trust in crypto bridging protocols. To mitigate risk, users must avoid visiting inceptionlrt.pages.dev or any related pages. Verify the official URL of any crypto bridge through official project websites or reputable aggregators. If you suspect interaction, immediately revoke any connected wallet permissions via blockchain explorers or wallet settings and transfer remaining funds to a cold wallet. Report the domain to security teams and block it via your network or browser filters to prevent future exposure. Always use multi-factor authentication on wallets and never approve transactions from untrusted sites.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Private YARA rules | inceptionlrt.pages.dev/1abe2e4f3b1baa7-349d95.js |
audit | Hunting_JS_WebAssembly |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Технологии · 6 identified
User-behavior analytics: heatmaps, session recordings, on-site surveys.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Tag management system for deploying marketing and analytics tags.
tagmanager.google.comWeb analytics service tracking website traffic and user behavior.
marketingplatform.google.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание