qrismedicvd[.]pages[.]dev
qrismedicvd.pages.dev — 未验证. 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 10/91 (ADMINUSLabs, ESET, Fortinet); PhishDestroy score 93/100. 注册商: Cloudflare Pages.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain is flagged as a fake medical login portal designed to harvest credentials from healthcare professionals or patients. Analysis indicates the site mimics legitimate telemedicine platforms, prompting users to enter sensitive login details, which are then captured by threat actors. The attack may also distribute malware under the guise of medical software updates or patient forms, increasing the risk of data theft or system compromise. Infrastructure analysis reveals the domain was registered through Cloudflare Pages on May 25, 2026, a service often exploited for rapid deployment of phishing sites due to its free hosting and SSL certificates. As of the latest scan, 3 out of 95 security vendors on VirusTotal detect this domain as malicious, with one confirmed blocklist entry. The creation date suggests the site was set up specifically for short-term fraud campaigns, a common tactic in credential theft operations. If you visited qrismedicvd.pages.dev, immediately disconnect the device from the network to prevent further data transmission. Run a full system scan using updated security tools to detect any installed malware. Change passwords for any accounts accessed on the device, especially those related to healthcare or financial services, using a separate, secure device. Monitor accounts for unauthorized activity and enable multi-factor authentication where possible. Report the incident to your organization’s security team or a trusted cybersecurity professional for further analysis.
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。