dwalletdemo[.]pages[.]dev
“dwallet — Your Crypto Wallet Inside Discord”
Kanıt özeti
PhishDestroy identifies dwalletdemo.pages.dev as a suspected cryptocurrency drainer domain currently under investigation for active phishing campaigns. The site masquerades as a legitimate wallet interface in an attempt to trick users into connecting their crypto wallets and approve malicious transactions. No specific drainer kit fingerprint has been extracted yet; attribution remains pending further sandbox analysis. The domain leverages Cloudflare Pages to host a spoofed login portal designed to harvest private keys or seed phrases under the guise of a wallet authentication flow. This domain resolves to IP 172.66.44.211 and is served over a Let's Encrypt SSL certificate issued to Cloudflare, Inc. VirusTotal currently reports zero detections across 95 engines as of the latest scan, indicating evasive behavior likely aided by Cloudflare’s infrastructure. The domain was registered anonymously through Cloudflare Registrar and is not currently flagged in Google Safe Browsing (GSB) or any major public blocklists, allowing it to remain accessible. With no historical blocklist presence and zero AV detections, this threat remains under the radar while actively targeting users. As of today, dwalletdemo.pages.dev remains active and unblocked. PhishDestroy has flagged the domain for ongoing monitoring and recommends immediate blocking at the network level. Users are advised to avoid interacting with this domain and verify any wallet-related URLs using PhishDestroy’s real-time scanner. Remaining risk is assessed as moderate due to active status and low detection coverage, requiring urgent signature updates to prevent further compromise.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 10.08.2026
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of dwalletdemo.pages.dev · checked Mar 28, 2026
Site Yapılandırma Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin