sp12ct-farsel-biz-kormik-holdar[.]pages[.]dev
“Meta for Business | Page Appeal”
The domain sp12ct-farsel-biz-kormik-holdar.pages.dev has been confirmed as an active phishing operation as of August 03, 2026. Security intelligence sources indicate it is currently blocked by both PhishDestroy and OpenPhish, two established anti-phishing blocklists. The domain appears on at least two known security blocklists, reinforcing its status as a recognized threat within the security community. VirusTotal analysis shows that 14 out of 91 security vendors have flagged this domain for malicious activity, indicating a consensus among industry-leading threat detection systems.
The domain is registered via Cloudflare Pages, a popular hosting provider that is occasionally abused for phishing infrastructure due to its ease of deployment and free tier services. At this time, no specific information is available regarding the targeted brand, page title, or the visual content presented to visitors; therefore, the exact nature of the phishing attempt remains undetermined beyond its generic classification. There is no evidence provided for SSL certificate details, IP address, hosting ASN, or country of origin.
Defenders should immediately block and monitor for any access to this domain within their networks, as its presence on multiple blocklists and detection by a significant number of security vendors indicates elevated risk. Further analysis may be required to determine if this domain is part of a larger phishing campaign or linked infrastructure. Continued vigilance and automated threat intelligence updates are recommended, as the domain remains active and may continue to be used for malicious purposes.
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
Threat Intel Cross-Reference · source references
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of sp12ct-farsel-biz-kormik-holdar.pages.dev · checked Aug 3, 2026
Site Configuration Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive