whitelist-virtuals[.]pages[.]dev
Pemeriksaan phishing dan keamanan whitelist-virtuals.pages.dev
“Create, co-own, interact with AI Agents | Virtuals Protocol”
whitelist-virtuals.pages.dev — Terakhir diketahui aktif (HTTP 200). Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 1/91 (Gridinsoft); URLQuery 1 alert; 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 84/100. Registrar: Cloudflare.
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
The domain whitelist-virtuals.pages.dev has been identified as engaging in brand impersonation phishing, leveraging Cloudflare Pages to host deceptive content designed to mimic legitimate services. This fraudulent infrastructure attempts to harvest credentials under the guise of a whitelisting service, a common tactic among credential theft campaigns. No drainer kit fingerprints were detected in available telemetry, though the domain’s rapid deployment and evasive hosting suggest a focus on short-lived, high-impact attacks.
Examination of technical indicators reveals that whitelist-virtuals.pages.dev resolves to IP 172.66.47.19 via Cloudflare’s infrastructure. Registered through Cloudflare, Inc., the domain currently carries a VirusTotal detection score of 0 out of 95 engines, indicating no immediate signatures capturing its malicious behavior. The SSL certificate, issued by Google Trust Services, enhances its appearance of legitimacy. Creation metadata places the domain as recently activated, increasing concerns over its use in current attack waves.
This domain remains active and is currently under investigation. PhishDestroy recommends immediate blocking at the network perimeter, alongside heightened monitoring for credential submission attempts to the associated URL. While the immediate risk is elevated due to undetected status and Cloudflare’s rapid hosting, the domain’s short operational lifespan limits long-term exposure. Organizations are advised to review logs for any user interactions and enforce strict blocklisting policies to prevent credential compromise.
Intelijen Keamanan Jaringan
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | bsc-dataseed3.bnbchain.org |
malicious | Sinkholed |
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Teknologi · 5 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Keyakinan 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Keyakinan 100%HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Keyakinan 100%Analisis VirusTotal
Bukti Terarsip
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive