global-kucquin[.]pages[.]dev
“Suspected phishing site | Cloudflare”
已存储的观测记录
观测到的标题差异
证据摘要
global-kucquin.pages.dev has been flagged for a fake login phishing scheme under active investigation, with a current risk level labeled as under_investigation. This domain, registered through Cloudflare, Inc., is designed to impersonate a legitimate login interface, likely aiming to harvest user credentials or sensitive data. PhishDestroy identifies this as a high-priority threat due to its active status and the potential for significant user impact if left unaddressed. The domain resolves to IP address 188.114.96.3 and is served via Cloudflare’s infrastructure, which may provide additional anonymity to its operators. VirusTotal currently reports 5 out of 95 detections, indicating that it has not yet been widely flagged by security vendors, though this does not diminish its threat potential. The domain utilizes a Google Trust Services SSL certificate, which may further lend it an air of legitimacy to unsuspecting users. These indicators suggest a well-constructed phishing attempt likely targeting login credentials, possibly for financial services, email platforms, or corporate portals.
This assessment is based on verified data points: VirusTotal shows 5 out of 95 detections as of the latest scan, indicating no current blocklisting by major security engines. The domain is registered through Cloudflare, Inc., a common choice for threat actors seeking to obscure their true hosting details or exploit free tiers for malicious activities. It resolves to IP 188.114.96.3, which is associated with Cloudflare’s infrastructure, a tactic often used to evade IP-based blocking. The presence of a Google Trust Services SSL certificate adds a layer of perceived trustworthiness, as these certificates are widely trusted by browsers. While the exact creation date of the domain is not provided, its active status and Cloudflare registration suggest recent deployment, likely within the past few months. The combination of these factors—low detection rates, Cloudflare’s anonymizing services, and a trusted SSL certificate—creates a deceptive environment ripe for credential harvesting attacks. Users interacting with this domain risk exposing login credentials, payment details, or other sensitive information to malicious actors.
To mitigate the risks posed by global-kucquin.pages.dev, users should avoid interacting with this domain entirely, as it is actively involved in a fake login phishing campaign. If credentials or sensitive data have already been entered, immediately change passwords for the affected accounts and enable multi-factor authentication (MFA) where possible. Organizations should consider blocking the domain at the network level and monitoring for any unusual login activity tied to credentials accessed via this portal. Security teams should also report the domain to relevant authorities, such as Google Safe Browsing, PhishTank, or their local CERT, to aid in broader detection and takedown efforts. For personal protection, users can leverage browser extensions or security tools that block known phishing domains and warn against suspicious login pages. Proactive awareness and education about phishing tactics—such as verifying URLs, checking for secure connections, and recognizing impersonation attempts—are critical in preventing credential theft. Given the domain’s use of Cloudflare and a trusted SSL certificate, traditional security measures may not suffice; thus, layered defenses and user vigilance are essential to counter this threat.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
取证情报
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of global-kucquin.pages.dev · checked Apr 10, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控