wwwworldlibertyfinancialcom[.]pages[.]dev
wwwworldlibertyfinancialcom.pages.dev — Contenuto non disponibile. Simulazione del marchio: MetaMask. Riepilogo delle prove: VirusTotal 12/91 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, ESET); 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 86/100. Registrar: Cloudflare Pages.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Analysis indicates that the domain wwwworldlibertyfinancialcom.pages.dev was registered on June 05, 2026 via the Cloudflare Pages service. The site resolves to the IP address 172.66.47.67, which is part of Cloudflare's edge network. Within three weeks of registration the domain has been listed on four independent security blocklists, specifically PhishDestroy, MetaMask, ScamSniffer, and SEAL, reflecting rapid detection by anti‑phishing tooling. VirusTotal has recorded detections from twelve of ninety‑one scanning engines, confirming that the payload or URL pattern is recognized as malicious by a subset of reputable vendors. The threat classification supplied is “generic phishing” and the risk level is marked as high, with the campaign status still active as of the report date, July 29, 2026.
The available evidence does not include details such as SSL certificate properties, HTTP response codes, page title, or any observed landing‑page content, leaving those aspects unverified. Consequently, defenders cannot assess whether the site serves a credential‑harvesting form, redirects to additional payloads, or employs any evasion techniques beyond the observed blocklist listings. The lack of publicly disclosed page content also prevents confirmation of any targeted brand or specific social‑engineering narrative. Given the current indicators, security operations should treat any traffic to wwwworldlibertyfinancialcom.pages.dev as malicious.
Defensive measures should include immediate blocking at perimeter firewalls, DNS filtering, and proxy enforcement, leveraging the known blocklist identifiers. Endpoint protection solutions that reference VirusTotal detection counts should be updated to flag the domain, and any existing email or web gateway rules that reference the listed blocklists (PhishDestroy, MetaMask, ScamSniffer, SEAL) should be verified for coverage. Continuous monitoring of the IP address 172.66.47.
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo