invest-bf3[.]pages[.]dev
“Suspected phishing site | Cloudflare”
已存储的观测记录
观测到的标题差异
证据摘要
The domain invest-bf3.pages.dev was identified as a generic phishing site posing an elevated risk of investment scams. It did not impersonate a specific brand or employ a known drainer kit. As of the latest verification, invest-bf3.pages.dev has been taken offline, though it previously operated as a fraudulent platform targeting users with investment-related phishing schemes.
Technical analysis of invest-bf3.pages.dev revealed 5 of 95 VirusTotal security vendors flagged the domain, including detections by CyRadar, Fortinet, and G-Data. The domain was registered through Cloudflare, Inc. on July 7, 2025, and resolved to the IP address 172.66.45.32, hosted on Cloudflare's US-based infrastructure (AS13335). It appeared on 5 security blocklists, including PhishDestroy, ScamSniffer, and Polkadot, and was assigned a Gridinsoft trust score of 0/100. The SSL certificate was issued by Google Trust Services (WE1), and the observed page title was 'Suspected phishing site | Cloudflare'. The domain employed HSTS and HTTP/3 technologies, and its nameservers were lou.ns.cloudflare.com and marjory.ns.cloudflare.com.
Users who interacted with invest-bf3.pages.dev should monitor their accounts for unauthorized transactions, particularly if financial or investment details were entered. Change passwords for any accounts accessed via the site and enable two-factor authentication where available. Report the domain to platforms such as Google Safe Browsing, the Anti-Phishing Working Group (APWG), or local cybercrime authorities to aid in mitigation efforts. If cryptocurrency was involved, review wallet approvals and consider transferring funds to a new wallet as a precaution.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
监控中的外部数据源 6 个 无匹配
检测时间线
取证情报
技术
识别出 3 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of invest-bf3.pages.dev · checked Apr 11, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控