adobe-xaf[.]azavier-cavion-dropons-com-s-account[.]workers[.]dev
“Worker threw exception | adobe-xaf.azavier-cavion-dropons-com-s-account.workers.dev | Cloudflare”
adobe-xaf.azavier-cavion-dropons-com-s-account.workers.dev — لم يتم التحقق منها. انتحال العلامة التجارية: Adobe; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 16/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); PhishDestroy score 95/100. مسجّل النطاق: Cloudflare Workers.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, adobe-xaf.azavier-cavion-dropons-com-s-account.workers.dev, is a convincing fake login page designed to steal Adobe account credentials. It impersonates Adobe's official sign-in interface, tricking users into entering their email and password. Once submitted, the information is sent to attackers who can then hijack accounts, access sensitive data, or launch further attacks. This is a classic credential theft scheme, not a generic phishing attempt—it specifically targets Adobe users.
Our analysis reveals strong evidence of malicious intent. VirusTotal shows 15 out of 95 security vendors flag this domain as malicious, and it appears on one security blocklist. The domain was created on April 23, 2026, using Cloudflare Workers as the registrar, which is often abused for hosting phishing sites. It resolves to IP 172.67.152.142 and uses a Let's Encrypt SSL certificate (E8), which gives it a false sense of legitimacy. These technical indicators, combined with the domain's suspicious name structure, confirm it is an active credential phishing threat.
If you have already visited this site and entered any credentials, change your Adobe password immediately and enable two-factor authentication. Also monitor your email for any suspicious activity. For added safety, run a full antivirus scan on your device. To avoid such threats in the future, always verify the URL before logging in—legitimate Adobe domains end in ".adobe.com" or ".adobe.net". Never trust login pages hosted on subdomains of workers.dev or similar free hosting services. Stay vigilant and protect your digital identity.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب