sp10ct-lorev-biz8-kurek-zamin[.]pages[.]dev
“Worker threw exception | sp10ct-lorev-biz8-kurek-zamin.pages.dev | Cloudflare”
The domain sp10ct-lorev-biz8-kurek-zamin.pages.dev is listed as active and assigned an elevated risk rating as of August 03, 2026. Intelligence sources indicate that the site is being used for a generic phishing campaign. It has been added to the PhishDestroy and OpenPhish blocklists, and appears on two additional security blocklists referenced by the reporting platform. VirusTotal analysis shows that 18 of 91 antivirus and URL‑reputation engines return a positive detection for malicious activity, confirming that a significant minority of scanners identify the domain as hostile.
No further technical details such as registrar, hosting IP, SSL certificate status, or page title have been released publicly, so the underlying infrastructure remains opaque. Consequently, defenders cannot attribute the domain to a specific hosting provider or geographic region, and cannot verify whether the site employs HTTPS or presents a valid certificate. The lack of publicly disclosed page content means that the exact phishing lure (e.g., credential harvesting for a particular brand) cannot be confirmed at this time. Given the confirmed blocklist entries and the VirusTotal detection rate, security teams should immediately add the domain to URL filtering and DNS sinkhole rules, enforce strict outbound traffic controls to prevent accidental connections, and monitor network logs for any attempted accesses.
Continuous re‑scanning of the domain is recommended, as threat actors frequently modify page content or relocate the payload. Organizations should also educate end users about the risk of unsolicited links that resolve to obscure subdomains under the pages.dev namespace, reinforcing the policy to verify URLs before entering credentials. Until additional forensic evidence is released, the domain should be treated as malicious and blocked across all protective layers.
Network Security Intelligence
Threat Response Pipeline
Public Blocklist Status
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
Threat Intel Cross-Reference · source references
Technologies · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% confidenceCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% confidenceHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% confidenceVirusTotal Analysis
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of sp10ct-lorev-biz8-kurek-zamin.pages.dev · checked Aug 3, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive