novaxva-redirects[.]pages[.]dev
“XVA Presale is LIVE I XVA Wallet I XVA Mobile - Nova XVA”
novaxva-redirects.pages.dev — 隐形 · 可达. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 1/91 (alphaMountain.ai); cloaking observed; PhishDestroy score 91/100. 注册商: Cloudflare.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies novaxva-redirects.pages.dev as a high-risk generic phishing domain that is currently active. This domain is designed to imitate legitimate services to trick users into divulging sensitive information such as login credentials or financial details. The threat is classified as generic_phishing, meaning it does not target a specific brand but may use various lures.
Technical indicators include: VirusTotal detection rate of 1/95 security vendors, indicating low but notable malicious flagging. The domain is registered through Cloudflare, Inc., and resolves to IP address 188.114.96.3. SSL certificate is issued by Google Trust Services (WE1), which may lend a false sense of legitimacy. The domain uses Cloudflare's DNS and proxy services, complicating takedown efforts. No blocklist or trust score data is available beyond the VT detection.
Mitigation steps: Users should never click links or submit data on this domain. Organizations should block the domain and IP at the network level, add to web filtering blacklists, and monitor for related phishing campaigns. Report the domain to Cloudflare and Google Safe Browsing. Use security awareness training to help users recognize phishing attempts. Regularly scan for compromised credentials that may have been exposed through similar domains.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。