wwwworldlibertyfinancialcom[.]pages[.]dev
wwwworldlibertyfinancialcom.pages.dev — 内容不可用. 品牌冒充:MetaMask. 证据摘要: VirusTotal 12/91 (ChainPatrol, alphaMountain.ai, BitDefender, CyRadar, ESET); 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 86/100. 注册商: Cloudflare Pages.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis indicates that the domain wwwworldlibertyfinancialcom.pages.dev was registered on June 05, 2026 via the Cloudflare Pages service. The site resolves to the IP address 172.66.47.67, which is part of Cloudflare's edge network. Within three weeks of registration the domain has been listed on four independent security blocklists, specifically PhishDestroy, MetaMask, ScamSniffer, and SEAL, reflecting rapid detection by anti‑phishing tooling. VirusTotal has recorded detections from twelve of ninety‑one scanning engines, confirming that the payload or URL pattern is recognized as malicious by a subset of reputable vendors. The threat classification supplied is “generic phishing” and the risk level is marked as high, with the campaign status still active as of the report date, July 29, 2026.
The available evidence does not include details such as SSL certificate properties, HTTP response codes, page title, or any observed landing‑page content, leaving those aspects unverified. Consequently, defenders cannot assess whether the site serves a credential‑harvesting form, redirects to additional payloads, or employs any evasion techniques beyond the observed blocklist listings. The lack of publicly disclosed page content also prevents confirmation of any targeted brand or specific social‑engineering narrative. Given the current indicators, security operations should treat any traffic to wwwworldlibertyfinancialcom.pages.dev as malicious.
Defensive measures should include immediate blocking at perimeter firewalls, DNS filtering, and proxy enforcement, leveraging the known blocklist identifiers. Endpoint protection solutions that reference VirusTotal detection counts should be updated to flag the domain, and any existing email or web gateway rules that reference the listed blocklists (PhishDestroy, MetaMask, ScamSniffer, SEAL) should be verified for coverage. Continuous monitoring of the IP address 172.66.47.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。