darkex-login-en-us[.]pages[.]dev
“Darkex Login | Access Your Decentralized Trading Dashboard”
darkex-login-en-us.pages.dev — لم يتم التحقق منها. نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 13/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 1 alert; PhishDestroy score 94/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies darkex-login-en-us.pages.dev as an active credential phishing domain designed to steal login credentials from unsuspecting users. This site mimics legitimate login interfaces to trick victims into entering their usernames and passwords, which are then harvested by attackers for fraudulent access or sold on dark web markets. The page leverages Cloudflare Pages to host fake login forms while concealing its true origin behind Cloudflare’s infrastructure, making detection harder for casual users. This domain was flagged by PhishDestroy after 7 out of 95 VirusTotal security vendors detected malicious content during automated scans. Registered through Cloudflare, Inc., the page resolves to IP 172.66.46.243 and uses a Google Trust Services SSL certificate to appear legitimate. While these technical details may seem reassuring, they are intentionally abused to deceive users who check for HTTPS or trust Cloudflare-hosted content. The domain’s recent creation and rapid deployment suggest an opportunistic attack targeting users seeking quick access to services. If you visited darkex-login-en-us.pages.dev, immediately change any passwords you entered and enable multi-factor authentication on all related accounts. Scan your device with updated antivirus software to check for malware or keyloggers that may have been installed. Report the domain to your IT department or security provider, and avoid interacting with similar Cloudflare-hosted pages unless you can verify their legitimacy through official channels. Staying vigilant about unexpected login prompts can prevent credential theft and account takeover.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | darkex-login-en-us.pages.dev |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org ثقة 100٪تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب