official-en-us-raby-walet[.]pages[.]dev
“Rabby Wallet – Secure, Smart & Seamless Multi-Chain Web3 Access”
official-en-us-raby-walet.pages.dev — Контент недоступний. Уособлення бренду: Rabby; Тип шахрайства: Aml Scam. Зведення доказів: VirusTotal 3/94 (ChainPatrol, alphaMountain.ai, LevelBlue); PhishDestroy score 65/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, official-en-us-raby-walet.pages.dev, poses a direct threat as a brand impersonation resource targeting users of Rabby Wallet, a multi-chain Web3 wallet. The site mimics the legitimate Rabby Wallet interface, presenting itself under the title 'Rabby Wallet – Secure, Smart & Seamless Multi-Chain Web3 Access' to deceive visitors into disclosing sensitive credentials or interacting with malicious smart contracts. Given the domain's structure and content, it is likely designed to facilitate cryptocurrency theft or unauthorized access to user wallets, a tactic commonly associated with crypto drainer schemes. Analysis indicates the domain was registered on April 25, 2026, through Cloudflare, Inc., and resolves to the IP address 172.66.47.188. Despite its recent creation, the domain has already been flagged by one security blocklist, though it remains undetected by antivirus engines, with 0 out of 95 detections reported on VirusTotal. The SSL certificate is issued by Google Trust Services, which may lend a false sense of legitimacy to unsuspecting users. Infrastructure analysis reveals the domain was taken offline, but its prior activity and registration details suggest a deliberate attempt to exploit trust in the Rabby brand. Users who visited official-en-us-raby-walet.pages.dev should immediately revoke any wallet permissions granted during the interaction and monitor their accounts for unauthorized transactions. It is recommended to conduct a full security audit of any devices used to access the domain, including scanning for malware and resetting passwords associated with cryptocurrency wallets or exchanges. If credentials were entered, users should assume compromise and transfer assets to a new, secure wallet. Additionally, affected individuals should report the incident to relevant security teams and consider implementing additional authentication measures for future transactions.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Технології · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of official-en-us-raby-walet.pages.dev · checked Jun 26, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога