deltaf254-lab[.]pages[.]dev
“AMERICA IS BACK | $AIB”
Зведення доказів
Analysis indicates that the domain deltaf254-lab.pages.dev is actively engaged in cryptocurrency-themed phishing as of July 19, 2026. The domain resolves to IP address 172.66.44.147, which is hosted on Cloudflare infrastructure in Canada. The page title, 'AMERICA IS BACK | $AIB,' suggests a focus on a cryptocurrency asset or token, though the specific brand or project being impersonated is not confirmed in available data. The domain is registered through Cloudflare Pages and uses a Let's Encrypt SSL certificate (identifier YE2), which is consistent with both legitimate and malicious sites leveraging free certificate authorities. The domain appears on three security blocklists and is actively blocked by PhishDestroy, MetaMask, and SEAL, indicating detection by multiple independent threat intelligence sources. Two of 91 security vendors on VirusTotal flag the domain as malicious, though the absence of broader detection does not preclude its classification as a threat. The HTTP status code 200 confirms the site is currently accessible. Infrastructure analysis reveals no anomalous registration patterns, but the use of Cloudflare Pages aligns with common phishing tactics to evade takedowns and obscure hosting origins. Defenders should treat this domain as high-risk and prioritize blocking it at the network and endpoint levels. Given its association with cryptocurrency-themed phishing, wallet providers and exchanges are advised to monitor for references to this domain in transaction metadata or user reports. Further investigation into the $AIB token or project may clarify the intended target, but current evidence supports immediate mitigation actions. The domain remains active, and no takedown efforts have been observed as of the report date.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 10.08.2026
7 зовнішніх джерел під наглядом Збігів немає
Аналітика доменів
Технічні подробиціDNS, імена TLS і часові мітки
Аналіз VirusTotal
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога