सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 21। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

secure-page-builder--stevedentltds[.]replit[.]app

“Security verification - Microsoft account”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
वायरस का कुल पता लगाना: 21/91 ब्रांड प्रतिरूपण: Microsoft
30/07/2026 Microsoft
रिपोर्ट सारांश

secure-page-builder--stevedentltds.replit.app — असत्यापित. ब्रांड प्रतिरूपण: Microsoft; घोटाले का प्रकार: Impersonation. साक्ष्य सारांश: VirusTotal 21/91 (Criminal IP, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. रजिस्ट्रार: Replit.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
F70D533D
स्कोर
95/100

This domain secure-page-builder--stevedentltds.replit.app is assessed as a high-risk credential phishing threat and remains active as of July 30, 2026. The domain is registered through Replit Inc. and resolves to IP address 34.117.33.233. VirusTotal analysis shows 7 out of 91 security vendors flagging this domain as malicious, providing strong corroborating evidence of its hostile nature. The domain appears on one security blocklist and is currently blocked by PhishDestroy.

Nameserver records are not found, which is atypical for legitimate services and may indicate either a recent configuration or an attempt to evade detection. No Safe Browsing, OTX, SSL certificate, HTTP status code, trust score, or page title data is available in the intelligence provided, so the exact visual content and brand impersonation target of the phishing page are not yet analysed. The absence of nameservers and the use of a subdomain under replit.app suggests the attacker is leveraging a free hosting platform to host the phishing infrastructure.

Defenders should treat this domain as confirmed malicious, block all traffic to secure-page-builder--stevedentltds.replit.app and its IP 34.117.33.233 at the network perimeter, and monitor for any users who may have visited the site. Credentials entered on this domain should be considered compromised and reset immediately. Continued monitoring is recommended as the domain remains active and may evolve its attack surface.

VirusTotal
VirusTotal
21 det.
सीएफ रडार
दुर्भावनापूर्ण
URLScan
यूआरएलस्कैन
ScamAdviser
Scamadviser
80/100
TLS प्रमाणपत्र
Google Trust Services
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
डेटा कवरेज VirusTotal 21 / 91 यूआरएलक्वेरी जाँच नहीं की गई फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार provider verdict: malicious URLScan capture संग्रहित रिपोर्ट URLScan verdict malicious डीएनएस ब्लॉक जाँच नहीं की गई TLS valid certificate, 68d कौन है not parsed स्क्रीनशॉट 3 captures · 2 sources चेन पुनर्निर्देशित करें जांच नहीं की गई Scamadviser 80/100
नेटवर्क सुरक्षा इंटेलिजेंस
CF Cloudflare Radar Verdict दुर्भावनापूर्ण
Phishing Security threats Phishing

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
12/14

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

पेज शीर्षक
Security verification - Microsoft account
Impersonates
Microsoft
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Google Trust Services · valid for 68 days

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict दुर्भावनापूर्ण score 100 Phishing brand: Microsoft report ↗
सर्वर / ASN Google Frontend · AS396982 Google LLC
IP प्रतिष्ठा abuse score 9/100 2 reports checked 30/07/2026
Registrar (base domain) Replit
दुरुपयोग संपर्कabuse@replit.com
IP पता 34.117.33.233 US
भौगोलिक स्थानUS Kansas City, US
नेटवर्कAS396982 · Google Cloud
रिवर्स IPviewdns.info → rapiddns.io →
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला30/07/2026
DOM Analysisanalyzed 30/07/2026score 78/1001 brand signal
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://secure-page-builder--stevedentltds.replit.app/
TLS Fingerprint
TLS Observationvalid from 09/07/2026scanned 30/07/2026
TLS SAN Domainsreplit.app
ICANN OVERSIGHT Registration: replit.app

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For the registrable domain replit.app behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।
थ्रेट इंटेलिजेंस क्रॉस-रेफ़रेंस · source references
स्कैमएडवाइज़र Public lookup
A public स्कैमएडवाइज़र lookup is available. Review its current score and warnings at the source; the existence of a lookup page is not itself a malicious verdict.
View on ScamAdviser
Live-fetched via CF worker proxy pool · cached 24h
तकनीकें · 7 identified
Google Cloud
IaaS

Google Cloud is a suite of cloud computing services.

cloud.google.com 100% विश्वास
jQuery
JavaScript libraries

jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.

jquery.com 100% विश्वास
HSTS
सुरक्षा

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org 100% विश्वास
Google Hosted Libraries
CDN

Google Hosted Libraries is a stable, reliable, high-speed, globally available content distribution network for the most popular, open-source JavaScript libraries.

developers.google.com 100% विश्वास
Google Cloud Trace
Performance

Google Cloud Trace is a distributed tracing system that collects latency data from applications and displays it in the Google Cloud Console.

cloud.google.com 100% विश्वास
Google Cloud CDN
CDN

Cloud CDN uses Google's global edge network to serve content closer to users.

cloud.google.com 100% विश्वास
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

21 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 7 detections
Criminal IP
alphaMountain.ai
BitDefender
Cluster25
CRDF
साइरेडार
Ermes
ईएसईटी
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
कास्परस्की
LevelBlue
Lionic
नेटक्राफ्ट
सोफोस
यूआरएलक्वेरी
VIPRE
वेबरूट

संग्रहीत साक्ष्य

Wayback Machine Snapshot
साक्ष्य समीक्षा के लिए एक ऐतिहासिक स्नैपशॉट उपलब्ध है
View Archive
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of secure-page-builder--stevedentltds.replit.app · checked Jul 30, 2026

98
Good
Performance
FCP
1.83s
First Contentful Paint
LCP
1.83s
Largest Contentful Paint
CLS
0.001
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
2.4s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Stored Capture Evidence 1 snapshot

Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.

Archived HTTP response HTTP 200
Requested URL: http://secure-page-builder--stevedentltds.replit.app/
Final URL: https://secure-page-builder--stevedentltds.replit.app/
Security verification - Microsoft account
प्रतिक्रिया
HTTP 200
HTML body
15.2 KB
Compressed
4.5 KB
Links
0 internal · 0 external
Detected technologies
jquery
Selected response headers
Cache-Control: private
Content-Type: text/html; charset=utf-8
Server: Google Frontend
Security headers present
Strict-Transport-Security
HSTS: observed DNSSEC: not observed WAF / firewall: not observed Cloaking flag: not observed
All stored response-header names (12)
Accept-RangesCache-ControlContent-TypeDateExpiresLast-ModifiedServerStrict-Transport-SecurityX-Cloud-Trace-ContextViaAlt-SvcTransfer-Encoding

साक्ष्य और बाहरी रिपोर्टें

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/secure-page-builder--stevedentltds.replit.app"
  title="PhishDestroy threat report for secure-page-builder--stevedentltds.replit.app"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।