touchfanrewards[.]pages[.]dev
“TOUCH FAN”
Сводка доказательств
This domain is flagged as a high-risk phishing site targeting users with fake rewards offers. Analysis indicates it operates under the generic_phishing threat type, designed to deceive visitors into submitting personal or financial information under false pretenses. The page title, TOUCH FAN, suggests an attempt to mimic legitimate fan engagement platforms, increasing the likelihood of successful social engineering attacks. Infrastructure analysis reveals multiple concrete indicators of malicious activity. The domain touchfanrewards.pages.dev was registered through Cloudflare Pages on March 27, 2026, an unusually future-dated creation that may indicate domain spoofing or registry manipulation. It resolves to the IP address 172.66.47.136, hosted by Cloudflare, Inc. in Canada, a common tactic to obscure origin infrastructure. The domain appears on three security blocklists, including PhishDestroy, ScamSniffer, and Enkrypt, and is flagged by 1 out of 95 security vendors on VirusTotal. The SSL certificate is issued by Google Trust Services (WE1), which, while legitimate, is frequently exploited by phishing sites to appear trustworthy. Mitigation steps for this specific threat include immediate blocking of the domain and its associated IP address (172.66.47.136) at the network perimeter. Organizations should update security blocklists to include touchfanrewards.pages.dev and monitor for any attempts to access it from internal systems. Users should be educated on recognizing phishing tactics, particularly those involving fake rewards or fan engagement schemes. Given the domain's active status and high-risk classification, security teams are advised to conduct retrospective analysis of logs to identify any prior interactions with this infrastructure. If personal or financial data was submitted, affected parties should initiate fraud response protocols, including credential rotation and transaction monitoring.
Data Coverage
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 11.08.2026
8 внешних источников под наблюдением Совпадений нет
Сообщения сообщества
Сообщил 1 участник сообщества; впервые замечено 27.03.2026
- Сохранённые сообщения
- 1
- Уникальные URL
- 1
Данные сообщества
5 сообщений сообщества
КатегорияPHISHING
@Drakannew
Криминалистическая аналитика
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание