Güvenlik raporuna geç
Checked 09.08.2026 Ref 1BAB51EF

MALICIOUS — CRITICAL

app-en-ndaxe.pages.dev için kimlik avı ve güvenlik kontrolü

app-en-ndaxe[.]pages[.]dev

This domain, app-en-ndaxe.pages.dev, is flagged as an active phishing site targeting users of a cryptocurrency exchange.

77/100 evidence score · Critical
VirusTotal
4/91
Blocklists
No stored match
Kullanılabilirlik
Bilinen son aktif · HTTP 200
Report / Add Evidence Appeal this listing
2026-06-13 02:17 UTCBilinen son aktif · HTTP 200

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 4. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
Jump to section
Rapor özeti

app-en-ndaxe.pages.dev — Bilinen son aktif (HTTP 200). Dolandırıcılık türü: Fake Exchange. Kanıt özeti: VirusTotal 4/91 (alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, LevelBlue); PhishDestroy score 77/100. Kayıt kuruluşu: Cloudflare Pages.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Evidence Analysis

Ref 1BAB51EF

This domain, app-en-ndaxe.pages.dev, is flagged as an active phishing site targeting users of a cryptocurrency exchange. Registered on June 13, 2026, through Cloudflare Pages, it resolves to IP 172.66.44.158, hosted on Cloudflare infrastructure in Canada. The page title, 'Ndax Login® | Secure Crypto Wallet & Digital Asset Exchange,' explicitly mimics a legitimate exchange, aligning with the classified scam type of a fake exchange. Analysis indicates the domain is currently active, returning an HTTP 200 status, and employs HSTS and HTTP/3 technologies, likely to appear legitimate to users and automated security tools. Security vendor data shows the domain is listed on one blocklist and flagged by 2 of 91 vendors on VirusTotal, though the specific detection rules are not disclosed. The domain's trust score is 0/100, reinforcing its high-risk classification. No known phishing kit or additional infrastructure details are available at this time. Defenders should treat this domain as malicious and prioritize blocking it at the DNS or network layer. Given its recent registration and active status, monitoring for related domains or IP reuse is recommended. The SSL certificate, issued by Google Trust Services, does not provide additional indicators of compromise beyond standard Cloudflare deployment practices.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
4 det.
TLS sertifikası
Google Trust Services
Hosting
Cloudflare Pages
Yaş
2 mo New
Gözlemlenen durum
Bilinen son aktif 200
PhishDestroy
DestroyList
Listede
Veri kapsamı12 recorded checks
VirusTotal 4 / 91 URLQuery kontrol edilmedi PhishStats kontrol edilmedi OTX no community references CF Radarı scan completed URLScan capture not submitted URLScan verdict değerlendirme yok DNS engellemeleri 14 kontrol edildi — engelleme yok TLS valid certificate, 49d WHOIS 2 mo old Ekran görüntüsü harici görüntü Yönlendirme zinciri araştırılmadı
Ağ Güvenliği İstihbaratı
Free Hosting Detected Cloudflare Pages
This domain is hosted on Cloudflare Pages (free hosting platform). Free hosting platforms are commonly used for both legitimate testing/development and malicious purposes. Additional context is needed

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Kullanılabilirlik
8/10
Tehdit Alındı
app-en-ndaxe.pages.dev tespit edildi ve kapsamlı analiz için sıraya alındı
13.06.2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
4/91 recorded on VirusTotal
05.08.2026
Google Safe Browsing
13.06.2026
Free Hosting: Cloudflare Pages
Site hosted on Cloudflare Pages — free hosting platforms are frequently used for throwaway phishing sites
Forensic Evidence Collected
Stored evidence from stored screenshot
Technical Analysis Recorded
Rapor, depolanan teknolojiyi veya adli analiz sonuçlarını içerir.
09.08.2026
Complaint Draft Available
Hiçbir gönderim kaydedilmez. Bir taslak oluşturabilir, inceleyebilir ve kendiniz uygun makama gönderebilirsiniz.
DestroyList Yayınlandı
13.06.2026
Monitoring Continues
Etki alanı erişilebilir durumda kalır veya erişimi kısıtlıdır; gelecekteki kontroller bu gözlemi güncelleyebilir.

Genel Engelleme Listesi Durumu

Kaydedilen görüntü

Etki Alanı Analizi

Alan adı
Sunucu / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Edge-IP itibarı bu etki alanıyla ilişkilendirilmez.
Platform sağlayıcısı Cloudflare Pages
IP adresi 172.66.44.158 CDN
Coğrafi konumCA Toronto, CA
AS13335 · Cloudflare, Inc.
Kaynak IP, bir CDN proxy'sinin arkasına gizlenir. Uç adresine ilişkin Ters IP sonuçları ilgisiz kiracılar içerir; Kaynağı bulmak için pasif DNS veya sertifika şeffaflığı verileri gerekir.
HTTP Durumu200
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi13.06.2026
Submitted URLhttp://app-en-ndaxe.pages.dev/
TLS Fingerprint
TLS Observationvalid from 03.05.2026scanned 13.06.2026
Sayfa başlığı
Ndax Login® | Secure Crypto Wallet & Digital Asset Exchange
TLS sertifikası
Valid transport encryption · Düzenleyen Google Trust Services · valid for 49 days
Teknolojiler · 3 identified
HSTS
Güvenlik

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org %100 güven
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com %100 güven
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org %100 güven
Detected via Cloudflare Radar · Wappalyzer engine
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

4 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed First positive detection Previous stored snapshot: 0 detections
alphaMountain.ai
Forcepoint ThreatSeeker
Fortinet
LevelBlue
Site Performans Analizi

Google PageSpeed Insights — mobile performance audit of app-en-ndaxe.pages.dev · checked Jun 13, 2026

100
Good
Performance
FCP
0.78s
First Contentful Paint
LCP
0.78s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
0.78s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin
Bu Raporu YerleştirRead-only HTML widget
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/app-en-ndaxe.pages.dev"
  title="PhishDestroy threat report for app-en-ndaxe.pages.dev"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>