pjbrq1dqtwil-txmknnnx-2b3c7d-tx999a[.]pages[.]dev
“Meta for Business | Page Appeal”
pjbrq1dqtwil-txmknnnx-2b3c7d-tx999a.pages.dev — Nicht bestätigt. Markenidentität: Base; Betrugstyp: Impersonation. Zusammenfassung der Beweislage: VirusTotal 14/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Emsisoft); PhishDestroy score 93/100. Registrar: Cloudflare Pages.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain pjbrq1dqtwil-txmknnnx-2b3c7d-tx999a.pages.dev is currently active and has been classified as a generic phishing infrastructure. DNS resolution points to the IPv4 address 172.66.44.61, indicating that the host is likely served from a shared cloud platform. The domain has been flagged by the PhishDestroy blocklist, and it appears on an additional security blocklist, confirming that at least two independent threat‑intelligence sources consider it malicious. VirusTotal analysis shows that 13 out of 91 security vendors have reported the domain as malicious, providing modest but consistent detection across the scanning ecosystem.
No further metadata such as registrar information, SSL certificate details, HTTP response codes, or page title has been disclosed, leaving the exact content of the landing page unverified at this time. The limited visibility suggests that the adversary may be employing a short‑lived or rapidly rotated site to evade extensive profiling. Defenders should immediately block the domain at perimeter firewalls and web‑proxy solutions, add the associated IP address 172.66.44.61 to deny‑list rules, and incorporate the domain into local threat‑intel feeds.
Continuous monitoring for new resolutions of the same IP range is advisable, as the attacker may redeploy the phishing payload under different sub‑domains. Organizations that have observed phishing attempts targeting their users should cross‑reference any recent suspicious URLs with this indicator to determine potential exposure. The evidence base is currently confined to DNS resolution, blocklist presence, and vendor detections; further investigation, such as sandbox analysis of the live page, would be required to refine the attribution and understand any payload delivery mechanisms.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
VirusTotal-Analyse
Archivierte Beweise
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of pjbrq1dqtwil-txmknnnx-2b3c7d-tx999a.pages.dev · checked Aug 7, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt