official-krkeenio-home[.]pages[.]dev
“Suspected phishing site | Cloudflare”
official-krkeenio-home.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: Genericcloudflare; نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 14/95 (ChainPatrol, alphaMountain.ai, BitDefender, Certego, CRDF); URLScan malicious verdict; PhishDestroy score 92/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
The domain official-krkeenio-home.pages.dev was created on 7 November 2025 and is currently listed as offline. It resolves to the IP address 172.66.44.99, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The hosting provider is Cloudflare, as indicated by the authoritative nameservers donna.ns.cloudflare.com and lewis.ns.cloudflare.com, and by the presence of Cloudflare‑specific technologies such as HSTS enforcement and HTTP/3 support. The site presented the page title “Suspected phishing site | Cloudflare”, and the SSL/TLS certificate was issued by Google Trust Services under the “WE1” designation, confirming a valid HTTPS endpoint. VirusTotal records show that 14 of 95 scanning engines flagged the domain, suggesting a moderate level of consensus among security vendors that the site is malicious.
The independent Gridinsoft reputation engine assigned a trust score of 0 out of 100, indicating an extremely low confidence in the domain’s legitimacy. The domain appears on a single public blocklist and is actively blocked by the PhishDestroy service, reinforcing its classification as a phishing vector. The intelligence tags the campaign as credential phishing, implying that the site likely attempts to harvest login credentials. No additional behavioral details, such as specific target brands or page content, are available in the current data set.
Consequently, the exact phishing kit or lure employed cannot be confirmed. Defenders should add 172.66.44.99 to network deny lists, enforce DNS filtering for official-krkeenio-home.pages.dev, and monitor for any future re‑registration of the domain. Continuous observation of Cloudflare‑hosted subdomains and periodic re‑scanning with multi‑engine services are recommended to detect possible re‑use of the infrastructure. Organizations using credential‑based authentication should maintain strict MFA enforcement and educate users about unsolicited login requests originating from unknown URLs.
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
الاستخبارات الجنائية الرقمية
التقنيات · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
تحليل VirusTotal
الأدلة المؤرشفة
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of official-krkeenio-home.pages.dev · checked Apr 11, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب