chrji-fhav-oz04[.]p-qtlv10l7[.]workers[.]dev
chrji-fhav-oz04.p-qtlv10l7.workers.dev — Контент недоступний. Уособлення бренду: Generic; Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 10/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; PhishDestroy score 80/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
PhishDestroy identifies chrji-fhav-oz04.workers.dev as an active crypto drainer targeting cryptocurrency users. This Workers.dev subdomain employs deceptive tactics to trick victims into connecting wallets and authorizing malicious transactions. The threat is elevated due to the immediate financial impact posed by unauthorized fund transfers. This domain was flagged by 9 out of 95 security vendors on VirusTotal, indicating widespread suspicion in the cybersecurity community. It resolves to IP 104.21.50.90, a Cloudflare Workers hosting environment commonly abused by threat actors for phishing infrastructure. The domain is registered through Cloudflare, Inc., leveraging their DNS and SSL services to appear legitimate. Using a Let's Encrypt SSL certificate, it mimics secure connections to increase trust. The Workers.dev subdomain structure is often chosen for its obscurity and rapid deployment capabilities, making detection and takedown more challenging. To mitigate risk, users must avoid interacting with this domain or any links associated with it. If you have visited chrji-fhav-oz04.workers.dev, disconnect your wallet immediately, revoke any unauthorized permissions, and transfer remaining funds to a secure wallet. Always verify URLs and use PhishDestroy’s real-time scanner before entering credentials or connecting wallets. Report this domain to PhishDestroy to aid in blocking efforts and protect others from potential harm.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of chrji-fhav-oz04.p-qtlv10l7.workers.dev · checked Apr 23, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога