florida[.]revenuetfz[.]cc
“florida.revenuetfz.cc”
The domain florida.revenuetfz.cc was registered through Dominet (HK) Limited on June 12 2026. DNS resolution points to the IPv4 address 43.166.241.242, which currently hosts the active payload. The domain is listed on a single security blocklist and has been explicitly blocked by the PhishDestroy service. VirusTotal analysis shows that 13 of 91 scanned security vendors have flagged the domain as malicious, indicating a non‑trivial consensus among detection engines.
No additional contextual data such as page title, SSL certificate details, or brand targeting has been published, so the exact content served by the site remains unknown. The limited blocklist presence combined with the moderate number of vendor detections suggests that the domain is being used in a generic phishing campaign, likely aimed at harvesting credentials or financial information, though the specific lure cannot be confirmed without content inspection. Defenders should treat the domain as hostile. Immediate mitigation steps include adding the domain and its resolved IP address to network‑level blocklists, updating endpoint protection signatures, and configuring web filtering solutions to deny traffic to the host.
Continuous monitoring of the IP 43.166.241.242 for any changes in hosting provider or additional malicious activity is recommended. Because the registrar is based in Hong Kong, take note that takedown requests may experience delays; proactive blocking remains the most reliable control. Organizations should also monitor for related sub‑domains that share the same registrar or IP range, as adversaries often generate additional domains to bypass defenses. In the absence of further forensic artifacts, this domain should be classified as elevated risk and handled accordingly.
Network Security Intelligence
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
VirusTotal Analysis
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive