zrfsub[.]pages[.]dev
“周润发博客 - 收录开源,好用的互联网项目”
PhishDestroy identifies zrfsub.pages.dev as an active Social Security phishing domain currently under investigation for fraudulent activity. This domain, hosted on Cloudflare Pages, is being monitored for potential impersonation of official U.S. Social Security Administration (SSA) portals. The threat remains classified as a generic phishing campaign due to unresolved verification of impersonated entities and operational intent. Users are advised to exercise caution when encountering this domain, as it may be used to harvest sensitive personal and financial information under false pretenses.
This domain was flagged by 0 of 95 VirusTotal vendors as of the latest scan, indicating a delay in detection system recognition despite its active status. It resolves to IP 172.66.47.143 via Cloudflare, Inc., with a Let's Encrypt SSL certificate for HTTPS obfuscation. The domain is part of Cloudflare's Pages platform, leveraging legitimate infrastructure to evade traditional blacklisting. No blocklist entries or trust scores are currently available, leaving users and organizations vulnerable to unchecked exposure. The lack of detections suggests a newly emerged or stealthily operated campaign relying on Cloudflare's reputation to bypass initial scrutiny.
Given the active threat status and absence of vendor detections, immediate precautionary measures are recommended. Users should avoid accessing zrfsub.pages.dev and report any instances of encountering this domain to their security teams or relevant authorities. Organizations are advised to update firewall rules and DNS blocklists to preemptively block traffic to this IP (172.66.47.143) and associated domains. Cloudflare Pages users should audit their domains for unauthorized subdomains and enable strict verification protocols. Continuous monitoring via threat intelligence feeds is critical to mitigate potential data breaches or credential harvesting attacks linked to this domain.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Перевірка за блок-листами
Джерел: 10 · синхронізовано 09.08.2026
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of zrfsub.pages.dev · checked Mar 25, 2026
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога