po-29z[.]pages[.]dev
“Suspected phishing site | Cloudflare”
po-29z.pages.dev — सामग्री अनुपलब्ध. ब्रांड प्रतिरूपण: Genericcloudflare; घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 8/93 (alphaMountain.ai, BitDefender, Fortinet, G-Data, Kaspersky); URLScan malicious verdict; 2 external blocklist matches (ScamSniffer, Enkrypt); PhishDestroy score 79/100. रजिस्ट्रार: Cloudflare.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis indicates that the domain po-29z.pages.dev was created on 21 February 2026 and is hosted on Cloudflare’s network (ASN 13335). DNS resolution returns the IPv6 address 2606:4700:310c::ac42:2f50, which maps to a United States location. The site served a HTTP 403 response and presented the page title “Suspected phishing site | Cloudflare”, suggesting that Cloudflare’s automated takedown page is active. Certificate details show a Google Trust Services / WE1 issuance, confirming proper TLS deployment. Reputation services have assigned extremely low trust scores: Gridinsoft 0 / 100 and Scamadviser 1 / 100.
The infrastructure advertises HSTS, HTTP/3, and Cloudflare’s edge services. Malware and URL scanners on VirusTotal recorded eight positive detections out of ninety‑three vendors, and three independent blocklists (PhishDestroy, ScamSniffer, Enkrypt) have already listed the domain as malicious. The listed nameservers—alice.ns.cloudflare.com and bayan.ns.cloudflare.com—are standard Cloudflare resolver entries. The only classified activity is credential phishing, as indicated by the provided scam type.
No additional payload, landing page content, or target brand information has been disclosed, leaving the exact phishing vector undefined. Defenders should continue to block the domain at network perimeter, update URL filtering lists, and monitor for any re‑registration attempts. Because the site is currently offline, real‑time threat hunting should focus on associated IP ranges and Cloudflare‑hosted assets that may be reused for future campaigns. Ongoing observation of VirusTotal and other reputation feeds is recommended to capture any resurgence.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
फॉरेंसिक इंटेलिजेंस
तकनीकें · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
वायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of po-29z.pages.dev · checked Apr 13, 2026
साक्ष्य और बाहरी रिपोर्टें
“@Drakannew”
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।