feedback-iseg-code-camp[.]pages[.]dev
“Feedback ISEG Code Camp”
PhishDestroy identifies feedback-iseg-code-camp.pages.dev as a live credential-harvesting phishing site masquerading as an ISEG code-camp feedback portal. The single-page HTML lure prompts users to enter Microsoft or Google account credentials under the guise of “finalizing registration,” exfiltrating data to a backend collector hosted elsewhere. SSL is provisioned via Google Trust Services, giving the page an air of legitimacy at first glance, while Cloudflare Pages hosts the payload to evade traditional network-layer blocking.
Investigative pivot shows the domain resolves to 188.114.96.3 and currently sits at 1/95 on VirusTotal with zero vendor flags, indicating a fresh campaign still under the radar. Registrant details are cloaked behind Cloudflare Registrar privacy, and the Cloudflare Pages site was instantiated only days ago; despite its youth, it remains unlisted on any public blocklist we queried. The combination of a trustworthy SSL issuer, rapid provisioning via a reputable hosting partner, and the absence of AV coverage creates a potent blend for successful compromise.
If you or any user in your environment visited feedback-iseg-code-camp.pages.dev, immediately rotate passwords for any account entered on the page and enable multi-factor authentication where available. Review authentication logs for anomalous sign-ins from unfamiliar IP ranges, especially around the time of first contact. Block the naked IP 188.114.96.3 and the FQDN at DNS and perimeter layers; if your stack supports JA3 fingerprinting, add the Google Trust Services leaf certificate fingerprint to decryption rules to catch follow-on variants. Finally, force a password-reset campaign for any corporate accounts that may have been exposed and conduct a phishing-awareness refresh to curb further exposure.
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
10 个来源 · 于 2026年8月9日 同步
取证情报
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of feedback-iseg-code-camp.pages.dev · checked Mar 25, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控