52190fa5[.]pathsss[.]pages[.]dev
Pemeriksaan phishing dan keamanan 52190fa5.pathsss.pages.dev
“Suspected phishing site | Cloudflare”
52190fa5.pathsss.pages.dev — Dapat dijangkau · akses dibatasi (HTTP 403). Peniruan identitas merek: Genericcloudflare; Jenis penipuan: Credential Phishing. Ringkasan bukti: VirusTotal 14/95 (ADMINUSLabs, BitDefender, CRDF, CyRadar, ESET); URLScan malicious verdict; Google Safe Browsing flagged; PhishDestroy score 92/100. Registrar: Cloudflare.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Analysis as of July 23, 2026 indicates that the domain 52190fa5.pathsss.pages.dev is associated with a credential phishing campaign. The site’s HTTP response returned a 403 status code, and the page title presented by the server is “Suspected phishing site | Cloudflare”. The domain was created on September 2, 2020 and is registered through Cloudflare, Inc., using the nameservers adi.ns.cloudflare.com and karl.ns.cloudflare.com. Infrastructure analysis shows the domain resolves to IP 172.66.44.249, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The TLS certificate is issued by Google Trust Services under the WE1 root, confirming the use of a valid SSL chain.
Detected technologies include HTTP/3, HSTS, and Cloudflare’s reverse‑proxy services. Reputation data is highly negative: Gridinsoft assigned a trust score of 0 out of 100. VirusTotal reports that 14 of 95 scanned security vendors flagged the domain as malicious. PhishDestroy has listed the domain as blocked, and Google Safe Browsing categorises it as a social‑engineering threat. The domain appears on at least one additional security blocklist.
No further content analysis is available beyond the generic page title; the exact phishing landing page or targeted brands have not been disclosed. Given the convergence of multiple independent detections, defenders should treat the domain as high‑risk. Immediate mitigation steps include adding 52190fa5.pathsss.pages.dev to network‑level blocklists, configuring DNS filtering to deny resolution, and monitoring traffic to the associated IP address 172.66.44.249 for any anomalous connections. Because the site is currently offline, ongoing surveillance is recommended to detect any re‑activation or related infrastructure that may be leveraged in future campaigns.
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Intelijen Forensik
Teknologi · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisis VirusTotal
Bukti Terarsip
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of 52190fa5.pathsss.pages.dev · checked Apr 11, 2026
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive