railguns[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Observação armazenada
Contraste de títulos observado
Resumo das evidências
Analysis of railguns.pages.dev shows a high‑risk credential phishing operation that has been taken offline as of the report date. The domain was registered on February 21, 2026 through Cloudflare, Inc., and resolves to the Cloudflare‑owned address 188.114.96.3 (AS13335, United States). HTTP requests return a 403 status code, and the site presents the generic Cloudflare page title "Suspected phishing site | Cloudflare," indicating that the content was flagged by Cloudflare's protective services. The SSL certificate is issued by Google Trust Services under the WE1 root, confirming the use of valid TLS.
Infrastructure fingerprints include HSTS, Cloudflare CDN, and HTTP/3 support, typical of fast‑response malicious hosting. Reputation metrics are extremely low: Gridinsoft assigns a trust score of 0 / 100, Scamadviser rates the domain 11 / 100, and Google Safe Browsing flags it for social engineering. VirusTotal reports that 13 of 93 security vendors have flagged the domain, and it appears on five independent blocklists, including PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura. The domain name servers are andronicus.ns.cloudflare.com and naomi.ns.cloudflare.com, both Cloudflare‑managed.
While the specific brand being impersonated is not disclosed in the available data, the scam type is identified as credential phishing, suggesting attempts to harvest login credentials. Uncertainty remains regarding the exact phishing payload and target audience, as no page content has been captured. Defenders should continue to block the domain at network perimeters, monitor for any re‑registration attempts, and enforce strict URL filtering based on the listed indicators. Ongoing threat intelligence feeds should be consulted for potential re‑use of the IP address or associated infrastructure.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
6 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
-
Status do domínio
Acessível → Inacessível
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
Tecnologias
3 tecnologias identificadas com alta confiança
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of railguns.pages.dev · checked Apr 13, 2026
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo