polkastarter-3fw[.]pages[.]dev
“Suspected phishing site | Cloudflare”
polkastarter-3fw.pages.dev — المحتوى غير متوفر. انتحال العلامة التجارية: Genericcloudflare. ملخص الأدلة: VirusTotal 7/93 (CRDF, CyRadar, Emsisoft, Fortinet, Netcraft); URLQuery 1 alert; URLScan malicious verdict; 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 74/100. مسجّل النطاق: Cloudflare.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
polkastarter-3fw.pages.dev was observed hosting a page titled “Suspected phishing site | Cloudflare”. The domain was registered on February 21, 2026 via Cloudflare, Inc., and resolves to the Cloudflare edge address 172.66.44.243, located in the United States under AS13335 (Cloudflare, Inc.). No TLS certificate was presented, indicating the site was served without HTTPS. Automated scans on VirusTotal returned 7 detections out of 93 security vendors, and the domain appears on four independent security blocklists.
It has been actively blocked by PhishDestroy, Polkadot, Enkrypt, and Codeesura. The site’s risk level was assessed as elevated, and the current operational status is offline, suggesting that the hosting provider or the blocking services have taken the site down. Evidence confirms that the domain was used for a generic phishing campaign, although the specific target brand or lure was not disclosed in the available data.
The lack of an SSL certificate and the reliance on Cloudflare’s shared hosting infrastructure are typical of short‑lived phishing infrastructure. Defenders should continue to deny any network traffic to the IP 172.66.44.243, add the domain to local blocklists, and monitor for re‑registration or similar sub‑domains under the same registrar. Ongoing threat‑intel feeds should be consulted for any resurgence, and any future sightings should be correlated with the observed blocklist signatures.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | polkastarter-3fw.pages.dev |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب