cosmos-victory[.]pages[.]dev
“Cosmos Explorer Demo”
Зведення доказів
This domain is flagged as a high-risk crypto wallet drainer phishing site targeting users of the Cosmos blockchain ecosystem. Analysis indicates the page masquerades as a legitimate "Cosmos Explorer Demo" to trick victims into connecting their wallets, enabling unauthorized fund transfers through malicious smart contract interactions. The threat type is specifically classified as a cryptocurrency drainer, designed to siphon assets from compromised wallets without user consent. Infrastructure analysis reveals the domain cosmos-victory.pages.dev was registered on January 27, 2024, through Cloudflare, Inc., and currently resolves to the IP address 172.66.45.48, hosted on Cloudflare’s network (AS13335). The SSL certificate is issued by Google Trust Services (WE1), a common characteristic of phishing sites leveraging legitimate CDN infrastructure. Detection metrics show 1 out of 95 security vendors on VirusTotal have flagged the domain as malicious, while it appears on one additional security blocklist, specifically PhishDestroy. Despite minimal detection coverage, the domain remains active and operational, posing an ongoing risk to unsuspecting users. Mitigation against this crypto wallet drainer requires immediate action from both users and security teams. Users should avoid interacting with the domain, revoke any connected wallet permissions, and verify all transaction requests through official blockchain explorers. Security teams are advised to block the domain and its resolving IP (172.66.45.48) at the network level, monitor for related phishing infrastructure, and alert users to the specific threat of Cosmos-themed wallet drainers. Given the domain’s recent registration and low detection rate, heightened vigilance is recommended for similar Cosmos-branded phishing attempts.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 13.08.2026
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога