nexusengine-konco88[.]pages[.]dev
“Suspected phishing site | Cloudflare”
保存済み観測
観測されたタイトルの差異
証拠の概要
The domain nexusengine-konco88.pages.dev is flagged as a credential‑phishing site. Observations from public intel show that the site presented the page title "Suspected phishing site | Cloudflare" before being taken offline, returning an HTTP 403 status code at the time of capture. The domain was registered on 21 February 2026 via Cloudflare, Inc., and resolves to the IP address 172.66.46.227, which belongs to AS13335 (Cloudflare, Inc.) and is geolocated in the United States. Security telemetry indicates that four of ninety‑three VirusTotal scanners flagged the domain, and it appears on three external blocklists. Additional protective services, including PhishDestroy, MetaMask, and SEAL, have listed the domain as malicious, reinforcing the classification as a phishing vector.
Infrastructure analysis reveals the presence of HSTS, Cloudflare services, and HTTP/3, all typical of Cloudflare‑hosted sites. The SSL certificate is issued by Google Trust Services under the WE1 label, confirming a valid TLS endpoint despite the malicious payload. Reputation scoring from Gridinsoft assigns a trust score of zero out of one hundred, signaling an extremely low confidence in legitimacy. Nameserver records point to emerson.ns.cloudflare.com and celine.ns.cloudflare.com, both owned by the registrar.
Because the site is currently offline, direct content inspection is not possible, leaving the exact phishing payload unverified. Defenders should continue to block the domain and its associated IP address at network and endpoint layers, update email and web‑filtering rules to include the known blocklist entries, and monitor Cloudflare‑controlled name servers for any rapid re‑registration attempts. Ongoing surveillance of the IP range linked to AS13335 is advised, as abuse may shift to adjacent addresses. The combination of multiple vendor detections, low trust score, and active blocklist listings supports an elevated risk rating for this infrastructure.
Data Coverage
脅威対応 Pipeline
ブロックリストの確認範囲
監視対象の外部情報源 10 件 · 保存スナップショット 2026年8月11日
検出タイムライン
使用技術
高確信度で特定された技術:3 件
VirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of nexusengine-konco88.pages.dev · checked Apr 11, 2026
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください