vegas108-slot[.]pages[.]dev
“VEGAS108: Situs Resmi MPO Special Bulan Mei Banjir Scatter & Gampang Jepe Hari Ini!”
vegas108-slot.pages.dev — Неперевірений. Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 1/91 (alphaMountain.ai); PhishDestroy score 76/100. Реєстратор: Cloudflare Pages.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, vegas108-slot.pages.dev, is actively engaged in online gambling credential phishing, targeting users with fraudulent offers of high-stakes slot games and scatter payouts. The site presents itself as an official gambling platform under the VEGAS108 brand, using localized language and time-sensitive promotions such as 'Bulan Mei Banjir Scatter & Gampang Jepe Hari Ini' to create urgency and encourage immediate user interaction. Such tactics are designed to harvest login credentials, financial information, and personal data from unsuspecting victims under the guise of legitimate gaming opportunities. Infrastructure analysis reveals multiple high-risk indicators. The domain is hosted on Cloudflare Pages infrastructure and resolves to the IP address 188.114.97.3, geolocated in Canada. It uses a Let's Encrypt SSL certificate (serial E8), providing a false sense of security. Despite its recent creation on May 12, 2026, the site has already been flagged by one security vendor on VirusTotal (1/95) and appears on one known blocklist. The page title, 'VEGAS108: Situs Resmi MPO Special Bulan Mei Banjir Scatter & Gampang Jepe Hari Ini!', directly references gambling terminology and regional promotions, further confirming its intent to deceive users in specific markets. Users who have visited vegas108-slot.pages.dev or entered credentials on the site should take immediate action. All passwords and financial details used on the site must be considered compromised and changed across all platforms where they were reused. Affected individuals should monitor their accounts for unauthorized transactions and enable multi-factor authentication where available. Browser data, including cookies and cached credentials, should be cleared to prevent session hijacking. Organizations are advised to block the domain and associated IP address at the network level to prevent further access by employees or clients.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога