meta-oxlin-153[.]pages[.]dev
“Suspected phishing site | Cloudflare”
Tóm tắt bằng chứng
meta-oxlin-153.pages.dev was observed hosting a credential phishing page that surfaced in early 2026. The site’s HTML title reads “Suspected phishing site | Cloudflare”, indicating that the page was served behind Cloudflare’s protection layer. DNS resolution points to the IPv6 address 2606:4700:310c::ac42:2cd2, which belongs to Cloudflare’s network (AS13335) and is geolocated to the United States. The domain was registered on February 21 2026 through Cloudflare, Inc., and uses the name servers joselyn.ns.cloudflare.com and ridge.ns.cloudflare.com. HTTPS is enforced via HSTS and the site supports HTTP/3; the presented certificate is issued by Google Trust Services under the “WE1” identifier, confirming a valid TLS chain.
HTTP requests return a 403 status, and the page is flagged by Google Safe Browsing for social engineering. Reputation services have assigned a Gridinsoft trust score of 0 / 100, and the domain appears on a single security blocklist. VirusTotal analysis shows 15 of 93 scanning engines flag the domain, reinforcing the malicious assessment. PhishDestroy has also listed the site as blocked. At the time of reporting (July 23 2026) the domain is offline, limiting immediate interaction but preserving forensic artifacts.
Analysts should continue to monitor the associated IP range for any re‑activation and consider adding the IPv6 address to outbound deny lists. Organizations should ensure that endpoint protection solutions reference the current blocklist entries and that web filtering policies block access to the domain and its Cloudflare‑hosted infrastructure. Because the site leveraged Cloudflare’s front‑end services, defenders should not rely on IP reputation alone and should employ URL‑based filtering aligned with the observed page title and certificate details. Ongoing intelligence collection is recommended to detect any successor domains that reuse the same registration pattern or similar Cloudflare name‑server configuration.
Data Coverage
Pipeline ứng phó với các mối đe dọa
Phạm vi danh sách chặn
10 nguồn ngoài được giám sát · ảnh chụp lưu ngày 12/08/2026
10 nguồn ngoài được giám sát Không trùng khớp
Dòng thời gian phát hiện
-
Cloudflare Radar
Đã lưu lần quét Cloudflare Radar · Mở lần quét
-
Trạng thái tên miền
Có thể truy cập → Không thể truy cập
-
Cloudflare Radar
Đã lưu lần quét Cloudflare Radar · Mở lần quét
Công nghệ
Đã xác định 3 công nghệ có độ tin cậy cao
Phân tích của VirusTotal
Phân tích hiệu suất trang
Google PageSpeed Insights — mobile performance audit of meta-oxlin-153.pages.dev · checked Mar 2, 2026
Bạn có bị ảnh hưởng bởi trang web này không?
Nếu bạn đã nhập thông tin xác thực tài khoản, thông tin cá nhân hoặc thông tin thanh toán hoặc đã tải xuống tệp từ miền này, hãy hành động ngay lập tức. Dưới đây là các nguồn lực giúp bạn báo cáo vụ việc và bảo vệ chính mình.
Hãy báo cáo với chính quyền địa phương
Chọn quốc gia của bạn để nhận liên hệ tội phạm mạng chính thức hoặc soạn thảo đơn khiếu nại →.
Kiểm tra bất kỳ tên miền nào
Phân tích mối đe dọa bằng cách sử dụng danh sách chặn được lưu trữ, WHOIS, DNS và bằng chứng quét công khai
Quét ngayBáo cáo lừa đảo qua email
Hãy gửi các tên miền đáng ngờ đến cơ sở dữ liệu mối đe dọa của chúng tôi — để bảo vệ cộng đồng
Báo cáoDòng tin tức về các mối đe dọa thời gian thực
Các báo cáo lừa đảo gần đây và những thay đổi về tính khả dụng được quan sát thấy
Theo dõiLuôn cập nhật thông tin, luôn an toàn
Theo dõi các mối đe dọa đang diễn ra hoặc phản đối danh sách này nếu bạn cho rằng đây là kết quả báo động sai