commbank-sorry-page-500[.]pages[.]dev
“Sorry... something has gone wrong.”
commbank-sorry-page-500.pages.dev — Contenuto non disponibile. Tipo di truffa: Banking Phishing. Riepilogo delle prove: VirusTotal 17/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CRDF); CF Radar malicious; PhishDestroy score 100/100. Registrar: Cloudflare.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain, commbank-sorry-page-500.pages.dev, is identified as a banking phishing resource designed to impersonate Commonwealth Bank, a major Australian financial institution. The threat type is classified as credential harvesting, with infrastructure analysis revealing the use of a generic error page (Sorry... something has gone wrong) as a likely decoy or fallback mechanism. No specific drainer kit signatures were observed, though the domain structure suggests an attempt to mimic legitimate service disruptions to lower victim suspicion. Technical indicators confirm elevated risk: the domain resolves to 172.66.46.233 (AS13335, Cloudflare, Inc.), was registered on February 03, 2025, and is hosted under Cloudflare’s registrar. VirusTotal detection shows 17/95 security vendors flagging the domain, while it appears on 2 security blocklists. The SSL certificate is issued by Google Trust Services (WE1), a common pattern in phishing campaigns leveraging free-tier hosting services. No Google Safe Browsing (GSB) hits were recorded at the time of analysis, though this may reflect detection latency rather than absence of malicious intent. The domain is currently offline, likely following takedown actions or automated suspension by the hosting provider. Despite its inactive status, residual risk remains for users who may have interacted with the site prior to deactivation. Organizations are advised to block the domain and IP at perimeter controls, while financial institutions should monitor for credential reuse attempts tied to this campaign. End users who accessed the page should rotate exposed credentials and review account activity for unauthorized transactions.
Indicatori di sicurezza
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo