commbank-sorry-page-500[.]pages[.]dev
“Sorry... something has gone wrong.”
commbank-sorry-page-500.pages.dev — Konten tidak tersedia. Jenis penipuan: Banking Phishing. Ringkasan bukti: VirusTotal 17/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CRDF); CF Radar malicious; PhishDestroy score 100/100. Registrar: Cloudflare.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, commbank-sorry-page-500.pages.dev, is identified as a banking phishing resource designed to impersonate Commonwealth Bank, a major Australian financial institution. The threat type is classified as credential harvesting, with infrastructure analysis revealing the use of a generic error page (Sorry... something has gone wrong) as a likely decoy or fallback mechanism. No specific drainer kit signatures were observed, though the domain structure suggests an attempt to mimic legitimate service disruptions to lower victim suspicion. Technical indicators confirm elevated risk: the domain resolves to 172.66.46.233 (AS13335, Cloudflare, Inc.), was registered on February 03, 2025, and is hosted under Cloudflare’s registrar. VirusTotal detection shows 17/95 security vendors flagging the domain, while it appears on 2 security blocklists. The SSL certificate is issued by Google Trust Services (WE1), a common pattern in phishing campaigns leveraging free-tier hosting services. No Google Safe Browsing (GSB) hits were recorded at the time of analysis, though this may reflect detection latency rather than absence of malicious intent. The domain is currently offline, likely following takedown actions or automated suspension by the hosting provider. Despite its inactive status, residual risk remains for users who may have interacted with the site prior to deactivation. Organizations are advised to block the domain and IP at perimeter controls, while financial institutions should monitor for credential reuse attempts tied to this campaign. End users who accessed the page should rotate exposed credentials and review account activity for unauthorized transactions.
Sinyal Keamanan
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisis VirusTotal
Bukti Terarsip
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive