guileless-blancmange-a1f83d[.]netlify[.]app
“Netflix India – Watch TV Shows Online, Watch Movies Online”
guileless-blancmange-a1f83d.netlify.app — Inhalt nicht verfügbar. Markenidentität: Netflix; Betrugstyp: Credential Phishing. Zusammenfassung der Beweislage: VirusTotal 20/94 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 1 alert; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. Registrar: Netlify.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
guileless-blancmange-a1f83d.netlify.app is a credential theft phishing domain designed to harvest user login credentials under false pretenses. This site masquerades as a legitimate service while deploying deceptive forms to trick visitors into surrendering sensitive authentication data. The attackers leverage social engineering tactics to exploit user trust, often mimicking trusted brands or services to increase the likelihood of data submission. Once credentials are captured, threat actors can gain unauthorized access to accounts, enabling further exploitation such as financial theft, identity fraud, or lateral movement within compromised systems. The domain’s infrastructure and operational patterns align with known credential harvesting campaigns, posing a severe risk to individuals and organizations alike. This domain was flagged by multiple security vendors, with 11 out of 95 scanners on VirusTotal identifying it as malicious. It resolves to IP address 35.157.26.135 and is hosted on Netlify’s infrastructure, which has been abused by threat actors to deploy phishing pages due to its legitimate cloud hosting services. The domain carries a DigiCert SSL certificate, which may lend it an air of legitimacy to unsuspecting users. Additionally, Google Safe Browsing has classified this domain under the SOCIAL_ENGINEERING category, confirming its malicious intent. The combination of these technical indicators—low VirusTotal detection ratio, legitimate hosting provider, SSL encryption, and blocklist inclusion—paints a clear picture of a high-risk credential theft operation actively targeting users. If you have visited guileless-blancmange-a1f83d.netlify.app and entered any credentials or personal information, immediately change the passwords for those accounts and enable multi-factor authentication where available. Scan your device for malware using reputable antivirus software, as stolen credentials could be used to deploy additional malicious payloads. Report the domain to your organization’s security team or to platforms like Google Safe Browsing to aid in its takedown. Avoid interacting with this domain further and warn others who may have encountered it. For future protection, always verify URLs, use password managers to detect fake login pages, and rely on trusted security tools to block known malicious domains.
Erkenntnisse zur Netzwerksicherheit
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | guileless-blancmange-a1f83d.netlify.app |
phishing | Phishing Block |
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 2 identified
Platform for deploying and hosting modern web applications.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of guileless-blancmange-a1f83d.netlify.app · checked Mar 26, 2026
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt