# sexarn-biz-siltox-15126.pages.dev — MALICIOUS > The domain sexarn-biz-siltox-15126.pages.dev is a high-risk phishing threat. Avoid interaction and verify links before clicking to protect your data. ## Summary PhishDestroy identifies sexarn-biz-siltox-15126.pages.dev as an active generic phishing domain posing a high risk to users. This site is designed to deceive victims into revealing sensitive information, potentially leading to financial loss or identity theft. Users are advised to exercise caution and avoid engagement with this domain. The domain sexarn-biz-siltox-15126.pages.dev resolves to IP address 172.66.47.141 and was registered on March 03, 2026, through Cloudflare, Inc. VirusTotal analysis shows that 16 out of 95 security vendors flagged this domain for phishing activity, indicating a consensus on its malicious intent. The use of a Cloudflare Pages subdomain adds a layer of complexity in tracing threat actors. Currently, the domain remains active and continues to pose a threat to unsuspecting users. PhishDestroy strongly recommends blocking access to this domain, implementing email filters to detect related phishing attempts, and educating users about the risks of interacting with unknown or suspicious URLs. Immediate action can mitigate potential compromise from this phishing campaign. ## Threat Details - Verdict: MALICIOUS - Site status: dead (HTTP 403) - Page title: Suspected phishing site | Cloudflare ## Domain Intelligence - Registered: 2026-03-03 01:00:02 - Registrar: Cloudflare, Inc. - Country: US - IP: 172.66.47.141 - IP Country: US - IP City: San Francisco - IP Org: AS13335 Cloudflare, Inc. - Nameservers: carol.ns.cloudflare.com isaac.ns.cloudflare.com - SSL Issuer: Google Trust Services / WE1 ## Detection Status - VirusTotal: 16 vendors flagged Vendors: ["ADMINUSLabs", "alphaMountain.ai", "BitDefender", "Chong Lua Dao", "CyRadar", "DNS8", "ESET", "Emsisoft", "Fortinet", "G-Data", "Gridinsoft", "Lionic", "Netcraft", "Phishing Database", "Sophos", "Webroot"] - Google Safe Browsing: clean - Blocklists: 1 hits Lists: ["PhishDestroy"] ## Evidence - Screenshot: https://i.ibb.co/MDjZgCK9/21f34a50e0c7.png - Cloudflare Radar: https://radar.cloudflare.com/scan/f88d67b9-8290-47e7-9d4d-c8838acf8034 - Wayback Machine: https://web.archive.org/web/https://sexarn-biz-siltox-15126.pages.dev - PhishDestroy: https://phishdestroy.io/domain/sexarn-biz-siltox-15126.pages.dev/ - LLM endpoint: https://phishdestroy.io/domain/sexarn-biz-siltox-15126.pages.dev/llm.txt ## If You Visited This Site 1. Change any passwords you may have entered 2. Enable 2FA on all related accounts 3. Monitor your accounts for unauthorized activity 4. Report to: FBI IC3, Europol, local authorities --- Report by PhishDestroy | https://phishdestroy.io/domain/sexarn-biz-siltox-15126.pages.dev/ Last updated: 2026-03-19