ccehsa-m188[.]pages[.]dev
“MDG188 - Link Alternatif Resmi Menempuh Slot Online Terlisensi Dan Terpopuler No #1”
Зведення доказів
The domain ccehsa-m188.pages.dev is currently active and flagged as a credential theft operation targeting users of online slot gaming platforms. Analysis indicates this is not a generic phishing attempt but a specialized campaign designed to harvest login credentials, payment details, and personal information from individuals seeking alternative access to licensed gambling sites. The page title, "MDG188 - Link Alternatif Resmi Menempuh Slot Online Terlisensi Dan Terpopuler No #1," explicitly references MDG188, a known online slot brand, suggesting direct impersonation to lend credibility to the fraudulent site. Infrastructure analysis reveals the domain was registered through Cloudflare, Inc. on March 02, 2026, and resolves to the IP address 172.66.46.230, hosted under AS13335 (Cloudflare, Inc.) in the United States. Security vendor detection is notable, with 6 of 95 VirusTotal engines flagging the domain as malicious. The domain appears on one security blocklist and is actively blocked by PhishDestroy. The SSL certificate is issued by Let's Encrypt (serial number E7), a common choice for both legitimate and malicious sites due to its free and automated issuance process. The use of Cloudflare's infrastructure further complicates attribution, as it masks the true origin of the hosting server. Current monitoring confirms the domain remains active and operational. Organizations and individuals are advised to block access to 172.66.46.230 and ccehsa-m188.pages.dev at the network perimeter. Endpoint protection should be updated to include this domain in deny lists, and users should be educated to recognize the specific page title and branding (MDG188) as indicators of fraud. Given the high-risk nature of credential theft, affected users should immediately reset passwords and monitor financial accounts for unauthorized activity. Security teams are encouraged to review logs for connections to the IP or domain to identify potential compromises.
Data Coverage
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
Cloudflare Radar
Сканування Cloudflare Radar збережено · Відкрити сканування
-
VirusTotal
0 → 6
Криміналістичні дані
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of ccehsa-m188.pages.dev · checked Mar 3, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога