exquisite-bonbon-223d90[.]netlify[.]app
“Sign in - Google Accounts”
exquisite-bonbon-223d90.netlify.app was flagged on August 02, 2026 as an active generic phishing site employing social engineering tactics. The domain is a Netlify‑hosted sub‑domain, which provides a cost‑free web‑hosting environment often abused for short‑lived malicious pages. Automated scans by Google Safe Browsing have classified the site under the “social engineering” category, indicating that it likely attempts to harvest credentials or personal data by masquerading as a legitimate service. Independent analysis on VirusTotal shows that nine out of ninety‑one security vendors returned a positive detection for the domain, reinforcing the suspicion of malicious intent.
The domain is also listed on a single public blocklist and has been actively blocked by the PhishDestroy remediation service. No public information about the site’s page title, underlying HTML, or targeted brand is currently available, and no WHOIS or SSL certificate details have been disclosed in the shared intelligence. Consequently, the exact content and the specific victim‑targeting vector remain uncertain. However, the convergence of multiple independent detections—Safe Browsing, VirusTotal, PhishDestroy, and a blocklist entry—provides sufficient confidence to treat the domain as a malicious actor.
Defenders should add exquisite-bonbon-223d90.netlify.app to DNS‑ or proxy‑level blocklists, ensure that email security gateways flag any messages containing links to the domain, and monitor network traffic for outbound connections to the Netlify hosting infrastructure. Continuous re‑scanning with multi‑engine services is recommended to capture any changes in the site’s behavior. Organizations that employ URL filtering should prioritize this domain for immediate denial, and incident response teams should be prepared to investigate any compromised credentials that may be linked to traffic directed at the site.
Network Security Intelligence
Threat Response Pipeline
Public Blocklist Status
Technologies · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% confidenceHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% confidenceVirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of exquisite-bonbon-223d90.netlify.app · checked Aug 2, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive