cashbackpadre[.]app
“cashbackpadre.app”
cashbackpadre.app — 未验证. 证据摘要: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, cashbackpadre.app, operates as a cryptocurrency cashback phishing site designed to deceive users into disclosing wallet credentials or transferring digital assets under false pretenses. The infrastructure mimics legitimate cashback reward platforms, often targeting users of decentralized finance (DeFi) services and cryptocurrency wallets. Analysis indicates the site employs social engineering tactics, such as fake reward offers or refund scams, to harvest sensitive information or facilitate unauthorized transactions.
Infrastructure analysis reveals the domain was registered on February 21, 2026, with a suspiciously recent creation date relative to its detection. It resolves to the IP address 188.114.97.3 and is flagged by 15 out of 95 security vendors on VirusTotal. Additionally, the domain appears on four security blocklists and is actively blocked by multiple threat intelligence feeds, including MetaMask, SEAL, PhishDestroy, and Maltrail. The page title, matching the domain name, further suggests a lack of legitimate branding or operational transparency.
Users who visited cashbackpadre.app should immediately revoke any connected wallet permissions and monitor their accounts for unauthorized transactions. If credentials or private keys were entered, affected parties should transfer assets to a new wallet and report the incident to relevant blockchain security teams. No further interaction with the domain or its associated infrastructure is advised, as it remains a confirmed phishing vector.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
存档证据
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。