auth-secure-connect[.]online
“Maintenance Underway — Our Website”
Stored observation
Observed title contrast
Evidence Summary
auth-secure-connect.online is an active credential phishing site designed to steal login credentials from unsuspecting users. The domain mimics legitimate authentication or secure connection pages, tricking visitors into entering sensitive information such as usernames, passwords, or even financial details. Once submitted, this data is harvested by attackers for unauthorized access to accounts, identity theft, or further cybercrime. The site is currently live and poses a high risk to anyone who encounters it.
PhishDestroy's analysis, combined with VirusTotal data, shows that 5 out of 95 security vendors flag this domain as malicious. The domain resolves to IP address 65.109.108.83, which may be associated with other phishing or fraudulent activities. Although specific creation and registrar details are not provided in this intelligence, the high risk level and active status indicate that the domain is being actively used for credential theft. Users should treat any interaction with this domain as a serious security threat.
If you have visited auth-secure-connect.online, do not enter any personal information. Immediately change passwords for any accounts that may have been compromised and enable two-factor authentication where possible. Run a full antivirus scan on your device to check for any malware. Report the domain to PhishDestroy and relevant authorities to help protect others. Stay vigilant against similar phishing attempts by verifying URLs before clicking and using security tools to block known malicious sites.
Data Coverage
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 12, 2026
10 monitored external feeds No match
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive