black-math-cbc3[.]dakriacreuielwtxea[.]workers[.]dev
“black-math-cbc3.dakriacreuielwtxea.workers.dev”
black-math-cbc3.dakriacreuielwtxea.workers.dev — Контент недоступний. Зведення доказів: VirusTotal 12/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); PhishDestroy score 86/100. Реєстратор: Cloudflare Workers.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain black-math-cbc3.dakriacreuielwtxea.workers.dev is currently active and has been classified as a generic phishing site. VirusTotal records show that 12 of 91 scanning engines have flagged the domain, indicating that a notable minority of security products recognize malicious behavior. The domain resolves to the IP address 104.21.29.210, which is part of Cloudflare's edge network and is commonly used by abuse operators to hide origin infrastructure.
The domain is listed on a single public blocklist and has been explicitly blocked by the PhishDestroy feed, suggesting that at least one dedicated anti‑phishing service has observed malicious activity linked to this host. Registration data reveals that the domain was created on February 08, 2019 and was provisioned through Cloudflare Workers, a service that enables rapid deployment of serverless scripts and can be abused to host transient phishing pages. No public page title, SSL certificate details, or brand‑target information are available, so the exact content served by the site remains unverified.
Defenders should treat the domain as hostile: add the domain and its resolving IP to DNS block or sinkhole policies, ensure that web proxy and URL filtering solutions reference the PhishDestroy feed and any other blocklists that include the host, and monitor for any outbound connections to the 104.21.29.210 address. Given the modest detection count and limited blocklist presence, continuous re‑evaluation is advised, as threat actors may adapt the site or reuse the infrastructure for new campaigns.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Технології · 3 identified
HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога