paybis-stage[.]pages[.]dev
“Paybis Widget”
已存储的观测记录
观测到的标题差异
证据摘要
This domain, paybis-stage.pages.dev, is identified as a credential phishing site designed to impersonate legitimate financial service interfaces. The page displays a 'Paybis Widget' title, suggesting an attempt to deceive users into entering sensitive login credentials, payment details, or personal information under false pretenses. Such sites often employ convincing visual elements and domain names resembling trusted platforms to increase the likelihood of successful exploitation. Analysis indicates the domain was registered on May 2, 2025, through Cloudflare, Inc., and is hosted on an IPv6 address (2606:4700:310c::ac42:2d30). It is detected by 3 out of 95 security vendors on VirusTotal, including MetaMask, PhishDestroy, and SEAL. The domain appears on three distinct security blocklists and has a Gridinsoft trust score of 0/100. Infrastructure analysis reveals the use of Cloudflare technologies, including HSTS and HTTP/3, alongside a Google Trust Services SSL certificate, which may lend an appearance of legitimacy to unsuspecting users. If this domain was visited, immediate action is required to mitigate potential compromise. Users should terminate any active sessions, clear browser cache and cookies, and change credentials for any accounts accessed or entered on the site. Monitor financial statements and account activity for unauthorized transactions. Consider enabling multi-factor authentication on all sensitive accounts to add an additional layer of security. If credentials were submitted, assume they are compromised and rotate them across all platforms where they may have been reused. Report the incident to relevant security teams or financial institutions for further guidance.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
检测时间线
-
VirusTotal
0 → 3
技术
识别出 3 项高置信度技术
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of paybis-stage.pages.dev · checked Jun 25, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控