sp4ct-velnor-biz8-carex-dolim[.]pages[.]dev
“Meta for Business | Page Appeal”
sp4ct-velnor-biz8-carex-dolim.pages.dev — 未验证. 证据摘要: VirusTotal 16/91 (alphaMountain.ai, BitDefender, ESET, Emsisoft, Forcepoint ThreatSeeker); PhishDestroy score 95/100. 注册商: Cloudflare Pages.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of sp4ct-velnor-biz8-carex-dolim.pages.dev as of August 06, 2026 indicates that the domain is currently active and associated with a generic phishing threat. VirusTotal reports that 12 of 91 security scanners have flagged the domain, showing a moderate consensus among detection engines that the site hosts malicious content. The domain is listed on one security blocklist and is explicitly blocked by the PhishDestroy feed, reinforcing the assessment that it is being used for credential‑harvesting or similar phishing operations.
DNS resolution points to the IP address 172.66.47.150, a host commonly linked to cloud‑based page‑hosting services, which can simplify rapid deployment of phishing pages but also complicates attribution. The elevated risk rating assigned to the domain aligns with the detection count and blocklist presence, suggesting that defenders should treat traffic to this host as potentially hostile. No additional public intelligence such as registrar details, SSL certificates, HTTP response codes, or page titles is available at this time, leaving the exact content and targeted brand of the phishing campaign uncertain.
Defenders are advised to add 172.66.47.150 to network‑level deny lists, enforce DNS sinkholing for the full domain, and ensure that web‑proxy and email filtering solutions reference the PhishDestroy blocklist. Continuous monitoring of outbound connections to the IP and periodic re‑scans with VirusTotal are recommended to capture any changes in the domain’s behavior. Because the domain resides on the pages.dev sub‑domain space, organizations using similar cloud‑hosting services should consider implementing strict egress controls and user‑education campaigns focused on recognizing phishing attempts.
威胁响应 Pipeline
公共封禁名单状态
威胁情报交叉核验 · source references
VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of sp4ct-velnor-biz8-carex-dolim.pages.dev · checked Aug 6, 2026
网站配置分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。