tusqa5-2lirvo[.]pages[.]dev
“Suspected phishing site | Cloudflare”
ملاحظة محفوظة
تباين العناوين المرصود
ملخص الأدلة
This domain is flagged as a credential theft operation designed to harvest user login credentials through deceptive login portals. Analysis indicates the site mimics legitimate authentication pages, tricking visitors into entering usernames, passwords, and potentially multi-factor authentication codes. The infrastructure is structured to exfiltrate captured data to attacker-controlled endpoints, enabling account takeovers and unauthorized access to sensitive systems. Infrastructure analysis reveals the domain tusqa5-2lirvo.pages.dev was registered through Cloudflare, Inc. on February 04, 2026, and resolves to the IP address 172.66.47.106, hosted on AS13335 in the United States. Security vendors on VirusTotal flag the domain at 18/95, while it appears on one additional blocklist. The SSL certificate is issued by Google Trust Services (WE1), a common feature in both legitimate and malicious Cloudflare-hosted sites. The page title, 'Suspected phishing site | Cloudflare,' suggests automated detection by the hosting provider prior to takedown. Users who visited tusqa5-2lirvo.pages.dev should assume their credentials were compromised. Immediate action is required: reset passwords for any accounts entered on the site, enable multi-factor authentication where available, and monitor linked accounts for unauthorized activity. Review recent login attempts and revoke access from unfamiliar devices or locations. If financial or sensitive data was exposed, consider placing fraud alerts on credit files and reporting the incident to relevant authorities. Browser-based password managers may have auto-filled credentials; audit stored entries for signs of tampering.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 12/08/2026
المخطط الزمني للاكتشاف
التقنيات
حُدّدت ٣ تقنيات عالية الثقة
تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of tusqa5-2lirvo.pages.dev · checked Mar 2, 2026
تحليل إعدادات الموقع
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب