cloud-open-9trq[.]p-oqmylewv[.]workers[.]dev
“cloud-open-9trq.p-oqmylewv.workers.dev”
cloud-open-9trq.p-oqmylewv.workers.dev — 内容不可用. 证据摘要: VirusTotal 12/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); PhishDestroy score 96/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies cloud-open-9trq.p-oqmylewv.workers.dev as an active crypto drainer domain posing as a cloud service. The page mimics a legitimate file-sharing interface to trick users into connecting wallets, triggering unauthorized token transfers. No specific brand impersonation was detected in current scans, but the drainer kit is designed to siphon cryptocurrency assets upon wallet connection. This domain resolves to IP 188.114.96.3 and is registered via Cloudflare, Inc. The Let’s Encrypt SSL certificate adds superficial legitimacy. VirusTotal flags show 11 out of 95 security vendors have detected malicious activity, placing it in the elevated risk tier. The domain was created recently and shows no presence on Google Safe Browsing (GSB), while third-party blocklists already include this domain in their feeds. As of the latest scan, the domain remains active and accessible. Immediate takedown actions have not been confirmed. Users are advised to avoid interaction and verify site safety through PhishDestroy’s real-time checks. Remaining risk is elevated due to active hosting and detectable drainer payloads.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
所用技术 · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of cloud-open-9trq.p-oqmylewv.workers.dev · checked Apr 19, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。