0145-53l[.]pages[.]dev
“Important Notification”
证据摘要
0145-53l.pages.dev was first registered on February 21, 2026 through Cloudflare, Inc. The domain resolves to the IP address 172.66.45.16, which belongs to AS13335 Cloudflare, Inc. and is geolocated in the United States. No TLS certificate is presented for the host, indicating that the site was served over plain HTTP. The only visible page element captured is the title “Important Notification”, suggesting a generic notification‑style lure typical of phishing campaigns.
VirusTotal records show that two of ninety‑five scanned security vendors flagged the domain as malicious, and the domain appears on a single external blocklist operated by PhishDestroy. As of the report date, July 24, 2026, the site has been taken offline, and no active HTTP response was observed. The limited detection footprint and the short lifespan of the domain point to a fast‑flux style deployment often used to evade takedown.
However, the absence of a certificate, the reliance on Cloudflare’s shared infrastructure, and the small number of vendor detections leave uncertainty about the full scope of the campaign, including the specific credential‑harvesting vectors and targeted brands. Defenders should proactively block the domain and its resolving IP address at network perimeter devices, add the host to internal phishing and URL filtering lists, and monitor Cloudflare‑registered domains for re‑registration of similar prefixes. Ongoing telemetry collection from DNS logs and any future VirusTotal or sandbox analyses should be reviewed to determine whether the infrastructure is reused in subsequent campaigns.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控