sp12ct-fandor-biz-hesvik-kormel[.]pages[.]dev
“Meta for Business | Page Appeal”
sp12ct-fandor-biz-hesvik-kormel.pages.dev — 内容不可用. 证据摘要: VirusTotal 14/91 (alphaMountain.ai, BitDefender, ESET, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 93/100. 注册商: Cloudflare Pages.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain sp12ct-fandor-biz-hesvik-kormel.pages.dev is currently listed as active malicious infrastructure. Its DNS resolves to Cloudflare Pages, indicating the site is served from a Cloudflare‑managed hosting environment. The domain appears on two public phishing blocklists, specifically PhishDestroy and OpenPhish, both of which have actively blocked the host.
VirusTotal scans show that 14 out of 91 security vendors have flagged the domain as malicious, reinforcing the blocklist evidence. No additional contextual data such as page title, target brand, or SSL certificate details have been released, so the precise phishing campaign payload remains unknown. The limited public intelligence suggests a generic phishing operation, but the convergence of multiple independent detections raises the confidence that the site is being used to harvest credentials or deliver malicious payloads.
Defenders should add the FQDN to network‑level deny lists, include it in URL filtering policies, and monitor for any outbound connections to the associated Cloudflare edge IP ranges. Continuous re‑scanning on VirusTotal and periodic checks of blocklist status are recommended to capture any changes in detection scores. Until further forensic artefacts are disclosed, the domain should be treated as high‑risk and blocked in enterprise environments.
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
威胁情报交叉核验 · source references
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of sp12ct-fandor-biz-hesvik-kormel.pages.dev · checked Aug 3, 2026
网站配置分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。