pub-50594d332a6d4bd48f0d302f8c0a488d[.]r2[.]dev
“KSI303 - Platform Games Slot Android Resmi Terlengkap”
pub-50594d332a6d4bd48f0d302f8c0a488d.r2.dev — Contenu indisponible. Résumé des preuves: VirusTotal 1/93 (URLQuery); PhishDestroy score 55/100. Bureau d’enregistrement: Cloudflare.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain pub-50594d332a6d4bd48f0d302f8c0a488d.r2.dev was a generic phishing site posing no specific brand impersonation but targeting users with fraudulent content. It operated as a phishing page under the title 'KSI303 - Platform Games Slot Android Resmi Terlengkap', likely aiming to deceive visitors into disclosing sensitive information or downloading malicious software. As of the latest verification, pub-50594d332a6d4bd48f0d302f8c0a488d.r2.dev has been taken offline, reducing immediate risk, though caution is advised for any residual exposure.
Technical indicators confirm the domain's suspicious nature. Only 1 of 95 VirusTotal vendors flagged pub-50594d332a6d4bd48f0d302f8c0a488d.r2.dev, while Google Safe Browsing did not detect it. The domain appeared on 1 security blocklist (PhishDestroy) and was registered through Cloudflare, Inc. on August 23, 2022. It resolved to the IP address 104.18.54.45, hosted by Cloudflare in the US, and used an SSL certificate issued by Let's Encrypt (E7). Observed technologies included AMP, Lightbox, HSTS, and Cloudflare, with a 404 HTTP status at the time of assessment.
Users who interacted with pub-50594d332a6d4bd48f0d302f8c0a488d.r2.dev should take immediate safety steps. If credentials were entered, change passwords for all associated accounts and enable two-factor authentication (2FA). Monitor accounts for unauthorized activity and report any suspected fraud to relevant financial institutions. To aid others, report the domain to platforms like Google Safe Browsing, PhishTank, or local cybersecurity authorities. Avoid revisiting the site, even if it appears inactive, as phishing domains may resurface.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 4 identified
AMP, originally created by Google, is an open-source HTML framework developed by the AMP open-source Project. AMP is designed to help webpages load faster.
www.amp.dev Confiance à 100 %Lightbox is small javascript library used to overlay images on top of the current page.
lokeshdhakar.com Confiance à 100 %HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif