profileupdate-collaboration[.]stefan-dufva[.]workers[.]dev
Зведення доказів
Analysis of the domain profileupdate-collaboration.stefan-dufva.workers.dev indicates an active credential‑phishing operation. The domain is hosted on Cloudflare’s infrastructure, as evidenced by the registrar entry "Cloudflare, Inc." and the resolution to IP address 188.114.97.3, which belongs to Cloudflare’s network. The domain has been flagged by multiple security vendors; VirusTotal reports six detections out of ninety‑one scanners, and the domain appears on one external blocklist. PhishDestroy has already blocked the domain, demonstrating that at least one anti‑phishing service has identified malicious activity.
No DNS NS records were retrieved, and the page title or SSL certificate details are not currently available, leaving the exact content and certificate posture unverified. Defenders should treat the domain as high‑risk and add it to outbound and inbound URL filtering rules. Network‑level controls can block traffic to the associated IP address (188.114.97.3) and to the entire Cloudflare edge range if broader mitigation is required.
Continuous monitoring of Cloudflare‑hosted subdomains for similar patterns is advised, as the attacker may reuse the same hosting provider for future campaigns. Organizations should also enforce multi‑factor authentication and credential‑reuse detection to mitigate potential credential harvests originating from this domain. Until further forensic analysis of the landing page is possible, the domain should remain blocked and logged for incident response correlation.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 12.08.2026
Хронологія виявлення
-
Перший запис
Перше збережене значення: Доступний
Технології
Виявлено 3 технології з високою впевненістю
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of profileupdate-collaboration.stefan-dufva.workers.dev · checked Aug 1, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога