sp4ct-velrax-biz8-sorim-kanex[.]pages[.]dev
“Suspected Malware | Cloudflare”
sp4ct-velrax-biz8-sorim-kanex.pages.dev — Non vérifié. Usurpation de l'identité de la marque : Cloudflare; Type d'arnaque : Impersonation. Résumé des preuves: VirusTotal 14/91 (alphaMountain.ai, BitDefender, CyRadar, Ermes, ESET); PhishDestroy score 93/100. Bureau d’enregistrement: Cloudflare Pages.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
This domain, sp4ct-velrax-biz8-sorim-kanex.pages.dev, is hosted on Cloudflare Pages infrastructure (pages.dev) and is currently flagged as an active phishing endpoint by multiple security sources. Analysis indicates the domain appears on at least one security blocklist and is blocked by PhishDestroy, a specialized anti-phishing service. VirusTotal detection data shows 12 of 91 security vendors flagging the domain as malicious, providing concrete evidence of its association with phishing activity. The domain's structure—containing randomized subdomains and a Cloudflare Pages suffix—aligns with common phishing deployment patterns, where attackers leverage free hosting services to rapidly deploy and rotate malicious endpoints.
Infrastructure analysis reveals the domain is served via Cloudflare's content delivery network, which may obscure the origin server's IP and hosting provider details. No registrar or ASN information is currently available for this subdomain, as it inherits Cloudflare's infrastructure. The SSL certificate is valid and issued by Cloudflare, which does not inherently indicate malicious intent but is consistent with phishing domains exploiting legitimate CDN services. The HTTP status and page content have not been fully analyzed, though the domain's classification as a phishing endpoint suggests it likely hosts credential harvesting or fraudulent content.
Defenders should treat this domain as an elevated-risk phishing resource. Immediate actions include blocking the domain at the network level, monitoring for related subdomains or domains using similar naming conventions, and reviewing logs for connections to this endpoint. Given the domain's presence on security blocklists and detection by multiple vendors, organizations should prioritize remediation for any systems that have interacted with it.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Preuves archivées
Analyse des performances du site
Google PageSpeed Insights — mobile performance audit of sp4ct-velrax-biz8-sorim-kanex.pages.dev · checked Aug 2, 2026
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif