kdply4avstr-blpqr65kmja-3d4e8f-wj519n[.]pages[.]dev
“favicon.ico (32×32)”
kdply4avstr-blpqr65kmja-3d4e8f-wj519n.pages.dev — Contenu indisponible. Résumé des preuves: VirusTotal 7/91 (BitDefender, Fortinet, G-Data, Kaspersky, LevelBlue); PhishDestroy score 71/100. Bureau d’enregistrement: Cloudflare Pages.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, kdply4avstr-blpqr65kmja-3d4e8f-wj519n.pages.dev, is flagged as an active generic phishing threat as of August 07, 2026. It is hosted on Cloudflare Pages infrastructure and resolves to IP address 172.66.44.141. VirusTotal data shows 7 out of 91 security vendors flag this domain as malicious, indicating moderate but notable detection coverage. The domain appears on one security blocklist and is already blocked by the PhishDestroy service, which suggests prior or ongoing malicious use has been identified by at least one threat intelligence feed. The exact page content has not yet been analyzed, so the specific brand impersonated, if any, and the precise phishing technique employed remain unknown.
Infrastructure analysis reveals that the domain uses Cloudflare's hosting platform, which is commonly abused for phishing due to its free tier and rapid deployment capabilities. The IP address 172.66.44.141 is part of Cloudflare's network, providing no direct insight into the operator's physical location. The domain name itself is a random alphanumeric string, consistent with automated phishing kit generation patterns. Defenders should treat this domain as actively hostile, block it at the DNS and email gateway levels, and monitor for related subdomains or variations that may emerge from the same infrastructure. Since the page content is unverified, users should avoid visiting the URL directly; instead, sandboxed analysis is recommended to capture the phishing kit for further threat intelligence.
Organizations should also review logs for any attempts to access this domain, as successful visits may indicate compromised credentials. The moderate vendor detection ratio suggests the domain may evade some security tools, reinforcing the need for proactive blocklisting and user awareness. No additional registration details, SSL certificate information, or HTTP status codes are available in this report. The domain remains active, so immediate action is advised.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Recoupement des renseignements sur les menaces · source references
Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of kdply4avstr-blpqr65kmja-3d4e8f-wj519n.pages.dev · checked Aug 7, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif