9a44a2aa[.]elvsoo[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Сохранённое наблюдение
Зафиксированное различие заголовков
Сводка доказательств
This domain, 9a44a2aa.elvsoo.pages.dev, is currently offline but was previously identified as a credential‑phishing site. DNS resolution points to the Cloudflare edge address 172.66.45.22, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. The domain was created on 02 September 2020 and is registered through Cloudflare, Inc., using the authoritative nameservers adi.ns.cloudflare.com and karl.ns.cloudflare.com. HTTPS is served with a Google Trust Services certificate (WE1) and the site advertised HTTP Strict Transport Security and HTTP/3 support, indicating a modern web stack. When accessed, the server returned HTTP 403, suggesting that the content is no longer publicly reachable.
Reputation data shows that Google Safe Browsing has classified the site as a social‑engineering threat, and PhishDestroy has actively blocked it. The domain appears on one external security blocklist. Gridinsoft assigned a trust score of 0 out of 100, reflecting extreme risk. VirusTotal analysis recorded 11 detections out of 93 scanned scanners, confirming malicious intent.
The page title returned by the server was "Suspected phishing site | Cloudflare", which aligns with the credential‑phishing classification. Uncertainty remains regarding the specific credential targets and any payload delivered before takedown, as no detailed page content was captured. Analysts should continue to monitor the associated IP address for any reuse, enforce blocklisting of 172.66.45.22 in perimeter defenses, and ensure that endpoint protection solutions ingest the VirusTotal detection identifiers. Organizations should also verify that users are educated about unsolicited login prompts and that multi‑factor authentication is enforced to mitigate credential‑phishing attempts originating from this infrastructure.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
10 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Cloudflare Radar
Сканирование Cloudflare Radar сохранено · Открыть сканирование
Криминалистическая аналитика
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of 9a44a2aa.elvsoo.pages.dev · checked Apr 12, 2026
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание