lidia-kitchen[.]pages[.]dev
“Украинска кухня София | Доставка на храна | Lidia's Kitchen”
已存储的观测记录
观测到的标题差异
证据摘要
lidia-kitchen.pages.dev is a confirmed phishing domain hosted on Cloudflare Pages that delivers a Google Trust Services impersonation kit designed to drain cryptocurrency wallet credentials. The site adopts the visual identity of Google Trust Services to deceive visitors into entering sensitive wallet information or downloading malicious wallet drainers. No specific drainer kit hash or campaign ID has been released yet, but forensic feeds indicate generic JavaScript-based credential harvesting scripts injected into the page.
Domain forensic evaluation reveals exact technical indicators: VirusTotal detection score of 1 out of 95 security vendors (1.05%), registered through Cloudflare, Inc., resolving to IP 172.66.44.79, and secured with a Google Trust Services SSL certificate. The domain was created under a Cloudflare Pages subdomain structure, lacks an independent WHOIS creation date due to proxy registration, and shows no listing on Google Safe Browsing (GSB) or major blocklists as of evaluation time. This low detection profile suggests a recently activated campaign leveraging Cloudflare’s infrastructure to evade early detection.
As of analysis, lidia-kitchen.pages.dev remains active and responsive. PhishDestroy has flagged this domain with unique seed 7bad39 and elevated risk level due to active crypto drainer deployment. Users are advised to avoid interaction and verify any site using PhishDestroy’s real-time scanning. Remaining risk is elevated given the use of trusted SSL certificates and CDN infrastructure, enabling continued operation until takedown or delisting occurs. Immediate avoidance is strongly recommended to prevent credential theft or wallet drainage.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
取证情报
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of lidia-kitchen.pages.dev · checked Mar 30, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控