MALICIOUS — CRITICAL
Pemeriksaan phishing dan keamanan billion-3f8.pages.dev
billion-3f8[.]
Analysis indicates that the domain billion-3f8.pages.dev was created on 2 September 2020 and is hosted on Cloudflare Pages, resolving to the IP address 172.66.46.248.
- VirusTotal
- 14/91
- Blocklists
- No stored match
- Ketersediaan
- Dapat dijangkau · akses dibatasi · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
billion-3f8.pages.dev — Dapat dijangkau · akses dibatasi (HTTP 403). Ringkasan bukti: VirusTotal 14/91 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); PhishDestroy score 92/100. Registrar: Cloudflare Pages.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
Evidence Analysis
Analysis indicates that the domain billion-3f8.pages.dev was created on 2 September 2020 and is hosted on Cloudflare Pages, resolving to the IP address 172.66.46.248. The domain appears on a single security blocklist and is specifically listed by PhishDestroy as a malicious site. VirusTotal scans have recorded detections from 14 of 91 security vendors, confirming that the domain is presently flagged by multiple independent engines.
The registration through Cloudflare Pages suggests the use of a reputable CDN provider to hide the true origin of the content, a common tactic in phishing campaigns that rely on rapid deployment and easy teardown. The elevated risk rating and active status indicate that the site is still reachable and may be used to harvest credentials or deliver further malicious payloads. While the available data does not reveal the exact page title, targeted brand, or the specific phishing kit employed, the combination of blocklist inclusion, vendor detections, and the Cloudflare Pages infrastructure provides sufficient evidence to classify the domain as a confirmed phishing resource.
Defenders should add the domain and its resolved IP address to firewall and DNS filtering rules, monitor for any outbound connections to the IP, and consider sharing the indicator set with internal threat‑intel teams. Continuous re‑scanning with VirusTotal or similar services is recommended to track any changes in detection counts. Until further analysis of the hosted content is performed, the domain remains a high‑confidence malicious indicator.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Cakupan data12 recorded checks
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of billion-3f8.pages.dev · checked Jul 29, 2026
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.