# norix-velxa-biz-tunra-zxic22526d-prixel.pages.dev — MALICIOUS > norix-velxa-biz-tunra-zxic22526d-prixel.pages.dev is a suspected phishing site. Avoid sharing personal info and stay safe online. ## Summary PhishDestroy identifies norix-velxa-biz-tunra-zxic22526d-prixel.pages.dev as a medium-risk phishing domain. Phishing sites are designed to trick users into disclosing sensitive information such as passwords, credit card numbers, or personal data by masquerading as legitimate services. Users who encounter such sites risk identity theft, financial loss, or unauthorized access to their accounts. This particular phishing domain operates by mimicking trustworthy online services to deceive visitors into entering confidential details. Although currently offline, it was detected through multiple security vendor flags and appeared on a security blocklist. The domain was registered recently and hosted on Cloudflare infrastructure, which can sometimes be used by attackers to quickly set up deceptive sites. If you have visited norix-velxa-biz-tunra-zxic22526d-prixel.pages.dev, it is crucial to avoid entering any personal information. If you already submitted sensitive data, consider changing your passwords immediately and monitor your accounts for suspicious activity. Employing updated antivirus software and running security scans can help detect potential malware. Always verify the authenticity of websites before sharing personal or financial information to stay protected from phishing threats. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 403) - Page title: Suspected phishing site | Cloudflare ## Domain Intelligence - Registered: 2026-03-09 01:07:01 - Registrar: Cloudflare, Inc. - Country: US - IP: 188.114.96.3 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: beau.ns.cloudflare.com nova.ns.cloudflare.com - SSL Issuer: Let's Encrypt / E8 ## Detection Status - VirusTotal: 8 vendors flagged Vendors: ["ADMINUSLabs", "DNS8", "Emsisoft", "G-Data", "Gridinsoft", "Netcraft", "Phishing Database", "Sophos"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://urlscan.io/screenshots/019ccffb-912a-772b-8753-de7d7dfef6c1.png - Cloudflare Radar: https://radar.cloudflare.com/scan/2ec4685e-6066-4dbd-ae24-1b9812f0b83b - Wayback Machine: https://web.archive.org/web/https://norix-velxa-biz-tunra-zxic22526d-prixel.pages.dev - PhishDestroy: https://phishdestroy.io/domain/norix-velxa-biz-tunra-zxic22526d-prixel.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/norix-velxa-biz-tunra-zxic22526d-prixel.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/norix-velxa-biz-tunra-zxic22526d-prixel.pages.dev/ Last updated: 2026-03-19