florina[.]digital
Phishing and security check for florina.digital
“Sign in to ID.me - ID.me”
Evidence Analysis
florina.digital has been assessed as a high-risk domain for the specific threat category of generic_phishing. The domain exhibits characteristics typical of phishing sites, designed to deceive users into divulging sensitive information.
Analysis indicates that florina.digital was registered through Sav.com, LLC on October 31, 2025, and has been associated with phishing activities. The domain currently resolves to the IP address 66.85.46.254, which is located in the United States and is part of the AS393960 network operated by Host4Geeks LLC. Notably, the domain does not have an SSL certificate, which is a common indicator of a lack of security and authenticity. According to VirusTotal, 19 out of 95 security vendors have flagged the domain as malicious. Additionally, the domain appears on one security blocklist and has been flagged by Google Safe Browsing as a phishing site. These multiple detections and trust scores underscore the high risk associated with the domain.
To mitigate the risk of falling victim to phishing attacks related to florina.digital, users should avoid clicking on links or entering personal information on any pages that this domain resolves to. It is recommended to verify the authenticity of any communication purportedly from ID.me or similar services by directly visiting their official website or contacting their customer support. Network administrators should consider blocking the domain and its associated IP address to prevent potential data breaches and protect user credentials.
Data coverage12 recorded checks
Network Security Intelligence
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | florina.digital |
malicious | Sinkholed |
| OpenDNS | florina.digital |
phishing | Phishing Block |
| DigiCert UltraDNS | florina.digital |
malicious | Sinkholed |
| Hagezi Threat Feed | florina.digital |
malicious | Sinkholed |
| DNS4EU | florina.digital |
malicious | Sinkholed |
Threat Response Pipeline
Public Blocklist Status
Stored Capture
Domain Intelligence
Technical detailsDNS, SSL SANs, timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Evidence & External ReportsIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.