darkex-login-en-us[.]pages[.]dev
“Darkex Login | Access Your Decentralized Trading Dashboard”
darkex-login-en-us.pages.dev — Doğrulanmamış. Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 13/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 1 alert; PhishDestroy score 94/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies darkex-login-en-us.pages.dev as an active credential phishing domain designed to steal login credentials from unsuspecting users. This site mimics legitimate login interfaces to trick victims into entering their usernames and passwords, which are then harvested by attackers for fraudulent access or sold on dark web markets. The page leverages Cloudflare Pages to host fake login forms while concealing its true origin behind Cloudflare’s infrastructure, making detection harder for casual users. This domain was flagged by PhishDestroy after 7 out of 95 VirusTotal security vendors detected malicious content during automated scans. Registered through Cloudflare, Inc., the page resolves to IP 172.66.46.243 and uses a Google Trust Services SSL certificate to appear legitimate. While these technical details may seem reassuring, they are intentionally abused to deceive users who check for HTTPS or trust Cloudflare-hosted content. The domain’s recent creation and rapid deployment suggest an opportunistic attack targeting users seeking quick access to services. If you visited darkex-login-en-us.pages.dev, immediately change any passwords you entered and enable multi-factor authentication on all related accounts. Scan your device with updated antivirus software to check for malware or keyloggers that may have been installed. Report the domain to your IT department or security provider, and avoid interacting with similar Cloudflare-hosted pages unless you can verify their legitimacy through official channels. Staying vigilant about unexpected login prompts can prevent credential theft and account takeover.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | darkex-login-en-us.pages.dev |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin