48410b52[.]formartt[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Gespeicherte Beobachtung
Beobachteter Titelkontrast
Zusammenfassung der Beweislage
Analysis of the domain 48410b52.formartt.pages.dev indicates it was a credential phishing site flagged by multiple security mechanisms before being taken offline. The domain resolved to 172.66.47.179, an IP address assigned to Cloudflare, Inc. (AS13335) in the United States. Infrastructure analysis reveals the domain was registered through Cloudflare and hosted on its Pages platform, utilizing Cloudflare's HTTP/3 and HSTS technologies. The SSL certificate was issued by Google Trust Services (WE1), a common certificate authority for legitimate and malicious sites alike. At the time of assessment, the domain returned an HTTP 403 status, and the page title displayed 'Suspected phishing site | Cloudflare,' suggesting Cloudflare's automated systems or human reviewers had already identified and restricted access.
Google Safe Browsing classified the domain under 'social engineering,' a category encompassing deceptive sites designed to trick users into divulging sensitive information. The domain appeared on at least one security blocklist and was blocked by PhishDestroy, a specialized anti-phishing service. Gridinsoft assigned a trust score of 0/100, reflecting high confidence in its malicious nature. While the exact content of the phishing page remains unanalyzed, the scam type was categorized as credential phishing based on available intelligence. No nameservers were detected, which may indicate an incomplete or hastily configured deployment.
Sixteen of the security vendors scanning the domain on VirusTotal flagged it as malicious, though the absence of additional context limits the granularity of this data. Defenders should treat this domain as a confirmed phishing threat and ensure it is blocked at the network and endpoint levels. Monitoring for related infrastructure, such as newly registered domains under formartt.pages.dev or IPs within Cloudflare's AS13335 range, may help identify follow-up campaigns.
Data Coverage
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 13.08.2026
Erkennungszeitleiste
-
Domainstatus
Erreichbar → Nicht erreichbar
-
Cloudflare Radar
Cloudflare-Radar-Scan gespeichert · Scan öffnen
Forensische Erkenntnisse
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of 48410b52.formartt.pages.dev · checked Apr 11, 2026
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt