sot-shield[.]pages[.]dev
Phishing- und Sicherheitsprüfung für sot-shield.pages.dev
“Meridian Shield — Amazon Account Defense”
sot-shield.pages.dev — Letzter bekanntermaßen aktiv (HTTP 200). Markenidentität: Amazon; Betrugstyp: Credential Phishing. Zusammenfassung der Beweislage: VirusTotal 0/94; PhishDestroy score 65/100. Registrar: Cloudflare.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
sot-shield.pages.dev is an active phishing domain masquerading as a security solution under the guise of 'sot-shield,' leveraging Cloudflare's infrastructure to appear legitimate. Based on the seed c3a08b, PhishDestroy identifies this as a generic phishing host designed to trick users into surrendering sensitive information under false pretenses, such as fake software downloads or credential theft. The threat level remains under investigation due to limited detection, but the domain's configuration aligns with established phishing behaviors observed in recent campaigns. sot-shield.pages.dev resolves to IP 188.114.97.3, which is served via a Let's Encrypt SSL certificate, increasing its perceived trustworthiness. This domain, hosted on Cloudflare (registered through Cloudflare, Inc.), currently shows zero detections out of 95 VirusTotal scans, indicating low immediate detection but not necessarily low risk. The domain is flagged as a generic phishing site with an active status, and Cloudflare's infrastructure is being abused to mask the true origin, complicating takedown efforts. While no blocklist inclusion or creation date is currently identified through the seed data, such domains often appear rapidly, operate briefly, and then disappear, making real-time monitoring critical. To mitigate exposure: Do not access or interact with sot-shield.pages.dev under any circumstances. If you have already entered credentials or downloaded files from this domain, immediately change all affected passwords and scan your system with updated antivirus software. Report the domain to your browser or security provider using the IP 188.114.97.3 and domain name for further analysis. Consider using DNS filtering services that block newly registered and low-reputation Cloudflare domains to prevent future exposure. Monitor financial and identity accounts for unusual activity linked to any interaction with this site.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 5 identified
Utility-first CSS framework for rapid custom UI development.
Fast CDN for everything on npm — serves raw files from npm packages.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of sot-shield.pages.dev · checked Mar 28, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt