blackmirrorxp-claim[.]pages[.]dev
“Worker threw exception | blackmirrorxp-claim.pages.dev | Cloudflare”
ملخص الأدلة
This domain, blackmirrorxp-claim.pages.dev, is flagged as a high‑risk brand‑impersonation campaign targeting Cloudflare. Infrastructure analysis shows the domain resolves to 172.66.44.89, an address owned by AS13335 Cloudflare, Inc., and is served through Cloudflare’s authoritative nameservers bailey.ns.cloudflare.com and cody.ns.cloudflare.com. The site presents a TLS certificate issued by Google Trust Services (WE1) and enforces HSTS while supporting HTTP/3, confirming legitimate use of Cloudflare services. The only publicly observable page response is an HTTP 500 error with the title “Worker threw exception | blackmirrorxp-claim.pages.dev | Cloudflare”, indicating a Cloudflare Workers runtime failure rather than a legitimate service page. The domain was created on 2025‑09‑08 via Cloudflare’s registrar and has a Gridinsoft trust score of 0/100. Threat intelligence shows it is listed on five security blocklists and has been blocked by PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura. VirusTotal analysis recorded detections by 2 of 93 scanned vendors. The campaign is classified as a crypto‑scam, although the exact malicious payload or lures have not been disclosed. Defenders should treat the domain as malicious, enforce network‑level blocking, update URL filtering, and monitor for any additional subdomains that resolve to the same Cloudflare IP range. Continuous observation of DNS changes and certificate renewals is advised, as the attacker may leverage Cloudflare’s infrastructure to host further fraudulent content.
Data Coverage
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | 1.1.1.1 |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
٦ مصادر خارجية مراقبة لا تطابق
المخطط الزمني للاكتشاف
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب