pudgypenguins-vb[.]pages[.]dev
“Suspected phishing site | Cloudflare”
pudgypenguins-vb.pages.dev — सामग्री अनुपलब्ध. साक्ष्य सारांश: VirusTotal 0/93; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. रजिस्ट्रार: Cloudflare.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
Analysis of pudgypenguins-vb.pages.dev shows a newly registered domain (created 21 Feb 2026) that resolves to Cloudflare edge IP 104.21.32.1, belonging to ASN 13335 in the United States. The domain is delegated to Cloudflare nameservers arya.ns.cloudflare.com and will.ns.cloudflare.com, indicating the infrastructure is fully hosted behind Cloudflare’s CDN and WAF. An HTTP 403 response is returned for the root request, and the page title presented by Cloudflare reads “Suspected phishing site | Cloudflare,” which is a default warning page used when Cloudflare has flagged the host as malicious. The site appears on three independent security blocklists and has been explicitly blocked by PhishDestroy, MetaMask, and SEAL, reinforcing the classification as a phishing vector.
Reputation scoring from Gridinsoft assigns a trust score of 0 / 100, reflecting a lack of trust. The TLS certificate is issued by Google Trust Services under the WE1 root, confirming a valid HTTPS configuration but offering no indication of legitimacy. VirusTotal reports that 93 scanning engines have examined the domain, and no detections were recorded, though this absence does not constitute evidence of safety. The combination of a recent registration, Cloudflare‑hosted IP, default phishing warning page, inclusion on multiple blocklists, and a zero trust score provides concrete indicators that the domain is being used for phishing or related abuse.
However, the offline status prevents direct observation of malicious content, and no specific payload or credential‑stealing page has been captured. Defenders should continue to block the domain at network perimeter and endpoint filters, monitor for any re‑activation, and consider adding the IP address 104.21.32.1 to threat‑intel feeds. Ongoing verification of the blocklist entries and periodic re‑scanning with sandbox tools are recommended to capture any future changes in behavior.
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 2 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comवायरसटोटल विश्लेषण
साइट प्रदर्शन विश्लेषण
Google PageSpeed Insights — mobile performance audit of pudgypenguins-vb.pages.dev · checked May 2, 2026
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।