MALICIOUS — HIGH
Verifica phishing e sicurezza per learn-extension-base-up.pages.dev
learn-extension-base-up[.]
learn-extension-base-up.pages.dev poses a risk of credential theft, which means it tries to trick users into revealing sensitive login information such as usernames, passwords, or other account details.
- VirusTotal
- 3/94
- Blocklists
- No stored match
- Disponibilità
- Raggiungibile · accesso limitato · HTTP 403
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
learn-extension-base-up.pages.dev — Raggiungibile · accesso limitato (HTTP 403). Simulazione del marchio: Coinbase; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 3/94 (ADMINUSLabs, Kaspersky, LevelBlue); URLScan malicious verdict; PhishDestroy score 65/100. Registrar: Cloudflare.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
learn-extension-base-up.pages.dev poses a risk of credential theft, which means it tries to trick users into revealing sensitive login information such as usernames, passwords, or other account details. This type of cyber threat can lead to unauthorized access to personal, financial, or work-related accounts, which may result in identity theft or financial loss. Users should be cautious when interacting with this site and avoid providing any personal credentials.
PhishDestroy's analysis found that learn-extension-base-up.pages.dev currently has zero detections out of 95 antivirus engines on VirusTotal, suggesting it may be a newly emerging threat or designed to avoid detection. The domain is actively registered through Cloudflare, Inc., a well-known registrar and content delivery network, and it uses an SSL certificate issued by Google Trust Services, which could give a false sense of security. The domain resolves to IP address 188.114.97.3 and remains active, which indicates ongoing risk. The site's registration date and other historical data were not specified, but the low VT detection count and Cloudflare registration are important technical markers.
If you have visited learn-extension-base-up.pages.dev, immediately avoid entering any login or personal information. If you suspect you may have already shared credentials, change your passwords on affected accounts as soon as possible and enable two-factor authentication where available. Monitor your accounts for any suspicious activity and consider running a security scan on your devices. Avoid clicking on any links or downloading files from this domain. Staying vigilant and reporting suspicious websites to your security provider can help protect you from evolving credential theft scams.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Copertura dei dati12 recorded checks
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 3 identified
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Analisi di VirusTotal
Prove archiviate
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of learn-extension-base-up.pages.dev · checked Apr 18, 2026
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.