Phishing detection: adobe-kejfewnfkjewnjkfnewjk.pages.dev
Adobe Screenshot
No screenshot available yet
Captured automatically on the next refresh cycle
Investigate
Domain
adobe-kejfewnfkjewnjkfnewjk.pages.dev1 CT host on apex
IP
188.114.96.3
URL
https://adobe-kejfewnfkjewnjkfnewjk.pages.dev
Cert
WE1
Phishunt analysis Beta
29
low suspicionheuristic risk score · not a probability
Why?
- +6.1 Google Safe Browsing
- +5.3 Keyword match
- +5.1 Site cluster
- +3.7 Brand in domain label
- +3.4 Shared IP cluster
- +1.1 ASN reputation
- +1.1 No CSP header
- +1.1 No HSTS header
- +0.6 Long domain
- +0.6 Suspicious TLD
- +0.3 Free CA
- +0.2 Obfuscated JavaScript
- +0.1 Hyphens
- +0.1 Deep subdomain
17 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting
A Cloudflare Pages site with a long random-looking subdomain that puts the Adobe name in its hostname and has heavy phishing keyword content. Google Safe Browsing flags it for social engineering. It likely harvests Adobe account credentials from a free PaaS host.
Google Safe BrowsingBrand in domain labelPaaS host
AI-generated from stored detector signals - the AI never visited the site. · 2026-10-03 · confidence 70%
Domain & Network
Whois
Registrar
CloudFlare, Inc.
Network
IP
188.114.96.3
Country
United States
Hosting
Cloudflare, Inc.
ASN
AS13335
TLS Cert
WE1
External detection
Google Safe Browsing
GSB category: SOCIAL_ENGINEERING
CleanOpenPhish · PhishTank · TweetFeed · urlscan.io
Requests
Resources
Observables
Related websites
Report this phishing
Submit to blocklists
urlscan
VirusTotal
Whois
ipinfo
Greynoise