wqddddqw[.]pages[.]dev
“Solana SPL Token Wallet | Secure, Fast, and Easy to Use”
证据摘要
Analysis indicates wqddddqw.pages.dev is an active brand impersonation infrastructure targeting Solana, presenting as a Solana SPL Token Wallet interface. The page is currently active and under investigation, with indicators consistent with deceptive crypto wallet branding intended to mislead users into interacting with unauthorized services.
Technical telemetry shows the domain resolves to 172.66.47.199 and is hosted within AS13335 Cloudflare, Inc. Infrastructure uses SSL issued by Google Trust Services / WE1 and is registered through Cloudflare, Inc. Security validation shows 0 of 95 VirusTotal vendors flagging the domain, despite it appearing on 1 security blocklist and being blocked by PhishDestroy. These mixed signals indicate early-stage detection evasion or newly deployed infrastructure.
Current status remains active and under_investigation. Users should avoid connecting wallets, entering seed phrases, or interacting with any token claim or airdrop prompts. Given the Solana impersonation theme and wallet-focused lures, the risk of credential or asset theft is elevated. Security teams should monitor DNS and hosting continuity, track changes in certificate issuance, and correlate additional indicators such as similar subdomains or cloned wallet interfaces. Defensive controls such as URL filtering and threat intelligence feeds should be updated to include this indicator.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
技术
识别出 3 项高置信度技术
VirusTotal 分析
存档证据
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控