yk1cxm-5nxu5-02b-rpv6-agq[.]pages[.]dev
“Meta for Business | Page Appeal”
yk1cxm-5nxu5-02b-rpv6-agq.pages.dev — Acessível · acesso restrito (HTTP 403). Resumo das evidências: VirusTotal 7/91 (BitDefender, Fortinet, G-Data, Kaspersky, LevelBlue); PhishDestroy score 83/100. Registrador: Cloudflare Pages.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
yk1cxm-5nxu5-02b-rpv6-agq.pages.dev was observed on 2026-08-03 as an active site hosting a generic phishing campaign. The domain is hosted on Cloudflare Pages, indicating the use of Cloudflare's serverless static‑site service for rapid deployment. VirusTotal analysis shows that 7 out of 91 security scanners have flagged the domain as malicious, providing an early indication of suspicious activity. The domain is listed on one external blocklist and is actively blocked by the PhishDestroy service, confirming that defensive feeds are already propagating the indicator.
The current intelligence does not reveal the exact content served by the site, nor does it provide details such as page title, SSL certificate attributes, or HTTP response codes. Consequently, the precise phishing vector (e.g., credential harvesting, malicious download) remains unverified. However, the combination of Cloudflare Pages hosting, multiple vendor detections, and inclusion on a blocklist aligns with patterns observed in other phishing infrastructures that leverage free or low‑cost hosting to obscure attribution. Defenders should add yk1cxm-5nxu5-02b-rpv6-agq.pages.dev to their URL filtering and DNS sinkhole policies, ensuring that any client request to the domain is blocked.
Monitoring of outbound traffic for connections to Cloudflare edge IP ranges associated with this domain is recommended, as is periodic re‑scanning on VirusTotal to capture any changes in detection scores. Organizations using PhishDestroy can rely on its existing block, but cross‑checking with additional threat intel sources will improve coverage. Continued observation is advised to capture any evolution of the site, such as the emergence of a specific landing page or credential‑capture form, which would allow more precise remediation.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Análise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of yk1cxm-5nxu5-02b-rpv6-agq.pages.dev · checked Aug 3, 2026
Análise da configuração do site
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo