phila[.]revenue-dw[.]cc
“phila.revenue-dw.cc”
phila.revenue-dw.cc — المحتوى غير متوفر. ملخص الأدلة: VirusTotal 8/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); PhishDestroy score 74/100. مسجّل النطاق: Dominet (HK).
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Analysis of phila.revenue-dw.cc confirms its classification as an active phishing domain targeting municipal revenue or tax-related services. The domain was registered on June 12, 2026, through Dominet (HK) Limited, a registrar frequently associated with high-risk domains. Infrastructure analysis reveals the domain resolves to IP address 170.106.51.191, which has been linked to other suspicious activities but currently lacks extensive historical context. As of July 29, 2026, eight of ninety-one security vendors on VirusTotal flag the domain as malicious, indicating moderate but not universal detection.
The domain appears on at least one security blocklist and is actively blocked by PhishDestroy, further corroborating its phishing status. The specific brand or entity being impersonated is not explicitly confirmed in available data, though the subdomain 'phila' suggests a possible focus on Philadelphia municipal services, such as tax payments or city revenue portals. No evidence of a phishing kit or page title is currently available, limiting deeper technical attribution. The domain's recent creation and rapid inclusion on blocklists suggest a deliberate attempt to evade detection while maintaining operational status.
Defenders should treat this domain as high-risk for users interacting with municipal or tax-related services. Recommended actions include blocking the domain at the DNS or proxy level, monitoring for related infrastructure (e.g., 170.106.51.191), and alerting users to potential phishing attempts leveraging city or revenue-themed lures. Further analysis of the site's content, if accessible, may reveal additional indicators or targeted brands.
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب