cosmos-victory[.]pages[.]dev
“Cosmos Explorer Demo”
Kanıt özeti
This domain is flagged as a high-risk crypto wallet drainer phishing site targeting users of the Cosmos blockchain ecosystem. Analysis indicates the page masquerades as a legitimate "Cosmos Explorer Demo" to trick victims into connecting their wallets, enabling unauthorized fund transfers through malicious smart contract interactions. The threat type is specifically classified as a cryptocurrency drainer, designed to siphon assets from compromised wallets without user consent. Infrastructure analysis reveals the domain cosmos-victory.pages.dev was registered on January 27, 2024, through Cloudflare, Inc., and currently resolves to the IP address 172.66.45.48, hosted on Cloudflare’s network (AS13335). The SSL certificate is issued by Google Trust Services (WE1), a common characteristic of phishing sites leveraging legitimate CDN infrastructure. Detection metrics show 1 out of 95 security vendors on VirusTotal have flagged the domain as malicious, while it appears on one additional security blocklist, specifically PhishDestroy. Despite minimal detection coverage, the domain remains active and operational, posing an ongoing risk to unsuspecting users. Mitigation against this crypto wallet drainer requires immediate action from both users and security teams. Users should avoid interacting with the domain, revoke any connected wallet permissions, and verify all transaction requests through official blockchain explorers. Security teams are advised to block the domain and its resolving IP (172.66.45.48) at the network level, monitor for related phishing infrastructure, and alert users to the specific threat of Cosmos-themed wallet drainers. Given the domain’s recent registration and low detection rate, heightened vigilance is recommended for similar Cosmos-branded phishing attempts.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Teknolojiler
3 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin