MALICIOUS — HIGH
captcha-da1.pages.dev için kimlik avı ve güvenlik kontrolü
captcha-da1[.]
This domain, captcha-da1.pages.dev, is actively engaged in credential theft by impersonating a legitimate browser verification process.
- VirusTotal
- 2/91
- Blocklists
- No stored match
- Kullanılabilirlik
- Bilinen son aktif · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
captcha-da1.pages.dev — Bilinen son aktif (HTTP 200). Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 2/91 (alphaMountain.ai, Sophos); PhishDestroy score 68/100. Kayıt kuruluşu: Cloudflare Pages.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Evidence Analysis
This domain, captcha-da1.pages.dev, is actively engaged in credential theft by impersonating a legitimate browser verification process. The page displays a deceptive 'Checking Your Browser...' prompt designed to harvest login credentials, session tokens, or other sensitive user data under the guise of a security check. Analysis indicates the site mimics common CAPTCHA or browser validation workflows, a tactic frequently employed to lower user suspicion while capturing input in real time. Infrastructure analysis reveals the domain was registered on March 25, 2026, through Cloudflare Pages, resolving to the IP address 172.66.44.73, which is geolocated to Cloudflare’s infrastructure in California. Despite its recent creation, the domain has already been flagged by one security blocklist, though it remains undetected by antivirus engines, with a VirusTotal score of 0/95. The SSL certificate is issued by Google Trust Services (WE1), a common feature in both legitimate and malicious sites leveraging Cloudflare’s network. Users who have interacted with captcha-da1.pages.dev should immediately terminate any active sessions and clear browser data, including cookies and cached credentials. If login details were entered, affected accounts must be secured by changing passwords and enabling multi-factor authentication where available. Network administrators are advised to block the domain and its resolving IP at the perimeter, while monitoring for indicators of compromise such as unusual login attempts or unauthorized access to linked accounts. Continuous scrutiny of Cloudflare-hosted subdomains with similar patterns is recommended due to the platform’s frequent abuse for phishing infrastructure.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Veri kapsamı12 recorded checks
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of captcha-da1.pages.dev · checked Mar 28, 2026
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.