thegraph-frontend-3f1[.]pages[.]dev
“Blockchain Deploy | All in one API Deployment Tool for web3 developers”
Kanıt özeti
PhishDestroy identifies thegraph-frontend-3f1.pages.dev as an active drainer phishing domain posing under investigation generic phishing risk. This domain attempts to impersonate The Graph project’s official frontend interface, aiming to trick users into entering private wallet keys or seed phrases into a fraudulent web form. No known drainer kit fingerprint has been extracted yet, but the landing page mimics legitimate The Graph styling and workflows to enhance credibility. The domain leverages modern hosting and SSL infrastructure to appear legitimate at first glance, which increases the risk of successful user deception. This domain resolves to IP address 188.114.97.3 and is served through Cloudflare Pages, registered via Cloudflare, Inc. with a Google Trust Services SSL certificate. As of the latest scan, VirusTotal reports 0 detections out of 95 engines, indicating it remains undetected by most antivirus and threat intelligence platforms. The domain appears to be recently created, though the exact registration date is not publicly disclosed. Google Safe Browsing (GSB) has not yet flagged the site, and no blocklist entries were found in major threat feeds. These technical indicators suggest a newly deployed infrastructure optimized to evade early detection. At present, the domain remains active and unblocked across most security platforms, posing a moderate-to-high risk to unwary users. PhishDestroy recommends immediate network-level and endpoint blocking via DNS sinkholing or firewall rules targeting 188.114.97.3 and the domain itself. Users should avoid accessing this domain and verify any The Graph-related links via official project channels. The ongoing investigation continues to assess the full scope of this campaign, including potential ties to broader credential harvesting or fund draining operations. Remaining risk is elevated due to low detection rates and the use of reputable hosting and SSL providers to lend false legitimacy.
Data Coverage
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of thegraph-frontend-3f1.pages.dev · checked Mar 31, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin