ca-portal-test[.]pages[.]dev
“Conditional Access Assessment Portal”
Зведення доказів
Analysis indicates that the domain ca-portal-test.pages.dev is an active phishing portal targeting Conditional Access authentication workflows. The domain was registered on June 15, 2026, through Cloudflare, Inc., and currently resolves to the IP address 188.114.96.3. The page title, 'Conditional Access Assessment Portal,' suggests an attempt to mimic enterprise identity and access management (IAM) systems, though the exact content and targeted brand remain unconfirmed due to lack of direct inspection. Infrastructure analysis reveals the use of Cloudflare hosting, HTTP/3, and HSTS, which may be employed to lend legitimacy or evade detection. The SSL certificate is issued by Google Trust Services, a common but not inherently malicious provider. As of July 12, 2026, the domain is flagged by 9 of 95 security vendors on VirusTotal and appears on one security blocklist, including PhishDestroy. The Gridinsoft trust score of 0/100 further supports its classification as malicious. Defenders should treat this domain as high-risk. The combination of a recently registered domain, Cloudflare hosting, and a page title indicative of IAM phishing warrants immediate blocking at the DNS or proxy level. Network logs should be reviewed for connections to 188.114.96.3 or the domain name, particularly from endpoints with access to enterprise authentication systems. No evidence of a specific phishing kit or targeted brand has been identified in available intelligence, so additional forensic analysis may be required if compromise is suspected.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
VirusTotal
0 → 9
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ca-portal-test.pages.dev · checked Jul 13, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога