service-architecture[.]pages[.]dev
“CODE COMPILER”
service-architecture.pages.dev — Conteúdo indisponível. Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 0/91; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrador: Cloudflare.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, service-architecture.pages.dev, is currently under investigation for credential theft activity targeting users through deceptive login portals. Analysis indicates the domain is active and has not yet been flagged by security vendors, suggesting early-stage deployment or evasion tactics. No specific brand impersonation has been confirmed at this time, but the infrastructure aligns with credential harvesting campaigns observed in recent months. Infrastructure analysis reveals the domain is registered through Cloudflare, Inc., a provider commonly used for both legitimate and malicious hosting. It resolves to the IP address 172.66.47.199, which falls within Cloudflare’s network range. As of the latest scan, the domain has been flagged by 0 of 95 VirusTotal vendors, indicating no prior detection or public reporting. No historical blocklist entries or trust score deviations were identified, further complicating attribution. The domain’s subdomain structure (pages.dev) suggests dynamic or ephemeral hosting, a tactic frequently employed to evade detection and takedown efforts. Current status remains active, with no confirmed sinkholing or mitigation measures in place. Organizations are advised to monitor network traffic for connections to service-architecture.pages.dev and its associated IP address. Proactive measures include adding the domain to internal blocklists, implementing real-time URL filtering, and conducting retrospective analysis of logs for prior interactions. Users should be alerted to the potential for credential theft via this domain, particularly if encountering unsolicited login prompts or requests for sensitive information. Further investigation is required to determine the full scope of the campaign and any affiliated infrastructure.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo