redstone-fi[.]pages[.]dev
Перевірка домену redstone-fi.pages.dev на фішинг і безпеку
“RedStone”
redstone-fi.pages.dev — Останній відомий активний (HTTP 200). Тип шахрайства: Crypto Drainer. Зведення доказів: VirusTotal 11/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, Fortinet); 2 external blocklist matches (ScamSniffer, Enkrypt); PhishDestroy score 93/100. Реєстратор: Cloudflare Pages.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, redstone-fi.pages.dev, is flagged as an active crypto drainer phishing site impersonating the RedStone decentralized oracle service. Analysis of the page title and visual elements confirms the site mimics the legitimate RedStone interface, likely designed to deceive users into connecting wallets and executing malicious smart contracts that siphon cryptocurrency assets. No specific drainer kit signature has been attributed at this time, but the domain exhibits behavioral patterns consistent with known crypto theft operations. Infrastructure analysis reveals the domain was registered through Cloudflare Pages on March 27, 2026, and currently resolves to the IP address 172.66.44.216, geolocated to a Cloudflare node in California. The SSL certificate is issued by Google Trust Services (WE1), a common configuration for Cloudflare-hosted properties. Despite its malicious intent, the domain remains undetected by antivirus engines, with a VirusTotal score of 0/95. However, it appears on three independent security blocklists, indicating prior identification by threat intelligence platforms. Google Safe Browsing does not currently flag this domain. As of the latest verification, redstone-fi.pages.dev remains active and accessible, posing an ongoing risk to users unfamiliar with RedStone’s authentic domain structure. Immediate mitigation steps include browser-based blocking via security extensions and network-level filtering of the IP 172.66.44.216. Given the domain’s recent creation and lack of widespread detection, users are advised to verify all RedStone-related URLs through official channels and avoid connecting wallets to unverified interfaces. The continued use of Cloudflare infrastructure suggests potential challenges in takedown efforts, necessitating vigilance from both users and security teams.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Криміналістичні дані
Аналіз VirusTotal
Докази та зовнішні звіти
“Angel drainer”
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога