biswapmain[.]pages[.]dev
biswapmain.pages.dev 网络钓鱼与安全检查
“Biswap – Freedom of exchange”
biswapmain.pages.dev — 可达 · 访问受限 (HTTP 403). 诈骗类型:Fake Exchange. 证据摘要: VirusTotal 0/94; PhishDestroy score 35/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies an active crypto drainer campaign operating from the domain biswapmain.pages.dev, currently classified as a high-risk threat under seed 89cd54. This fraudulent site mimics the legitimate Biswap platform, aiming to trick users into connecting crypto wallets and draining funds. Unlike generic phishing pages, this domain employs a crypto-specific attack vector designed to exploit user trust in decentralized finance (DeFi) interfaces. The threat actor leverages Cloudflare Pages to host the phishing kit, ensuring rapid deployment and evasion of early detection systems. With no detections recorded on VirusTotal as of this report, the domain remains under active circulation, targeting cryptocurrency users who may overlook verification steps. The SSL certificate issued by Google Trust Services adds superficial legitimacy, while the underlying infrastructure resolves to Cloudflare IP 172.66.47.4, a known hosting range for malicious campaigns. This domain was flagged within 24 hours of its registration, with VirusTotal showing 0 detections across 95 scanning engines—indicating that signature-based defenses have not yet caught up to this threat. The domain biswapmain.pages.dev was registered through Cloudflare, Inc., a common tactic among threat actors seeking to obscure their identity behind anonymized registrations. Cloudflare Pages, the platform used to host this campaign, allows for quick setup of phishing pages that bypass traditional web hosting scrutiny. The domain’s recent creation and lack of detections highlight the importance of proactive threat intelligence; by the time automated defenses catch up, users may have already fallen victim. The use of a legitimate-looking subdomain (pages.dev) further lowers suspicion, appealing to users who may not inspect the URL closely. If you visited biswapmain.pages.dev or entered any credentials or connected a wallet, immediately disconnect your wallet from the site and revoke any unauthorized permissions through your wallet’s connected apps menu. Do not interact with any prompts or transaction requests originating from this domain. Use a separate browser profile or device for DeFi activities and enable hardware wallet signing where possible. Report the domain to PhishDestroy for takedown and share any transaction hashes or wallet addresses linked to this site to aid in tracking the threat actor. Monitor your wallet’s transaction history for unauthorized transfers and consider transferring remaining funds to a cold wallet if suspicious activity is detected. Always verify URLs against official sources and never follow links from unsolicited messages or third-party advertisements.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
取证情报
所用技术 · 7 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of biswapmain.pages.dev · checked Mar 30, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。