safe-badge-start-page-00031hello[.]pages[.]dev
“Meta Verified – Prämien für Sie”
safe-badge-start-page-00031hello.pages.dev — İçerik kullanılamıyor. Marka kimliğine bürünme: Cloudflare; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 16/91 (alphaMountain.ai, BitDefender, CyRadar, ESET, Emsisoft); CF Radar malicious; PhishDestroy score 95/100. Kayıt kuruluşu: Cloudflare.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, safe-badge-start-page-00031hello.pages.dev, is flagged for brand impersonation targeting Cloudflare infrastructure. Analysis indicates the threat type is credential harvesting through a fabricated login interface, designed to deceive users into submitting authentication details under the guise of a legitimate service. The page title explicitly reads 'Suspected Phishing | Cloudflare,' further confirming its fraudulent intent. No drainer kit signatures were detected, but the domain leverages Cloudflare’s own hosting platform to lend false credibility. Infrastructure analysis reveals the domain resolves to the IP address 172.66.44.124, registered through Cloudflare, Inc. Security vendors on VirusTotal flagged this domain at a ratio of 11/95, indicating moderate detection coverage. The SSL certificate is issued by Google Trust Services, and the domain employs HTTP/3 and HSTS protocols, mimicking legitimate security practices. No exact creation date is available, but the domain’s rapid takedown suggests recent registration. Google Safe Browsing (GSB) and other blocklists have not yet published entries, though the domain was proactively removed by the hosting provider. Current status shows the domain as offline, likely due to enforcement action by the hosting entity. While no active compromise is detected, residual risk remains for users who may have interacted with the domain prior to takedown. Organizations are advised to monitor for credential reuse attempts and review logs for connections to 172.66.44.124. Network-level blocks on the domain and IP are recommended as a precautionary measure. No further malicious activity has been observed post-removal, but vigilance is warranted given the domain’s prior impersonation tactics.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of safe-badge-start-page-00031hello.pages.dev · checked Jul 4, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin