godlike-visit[.]online
“Pro Creator Platform”
Evidence Summary
This domain, godlike-visit.online, has been identified as a credential harvesting phishing site designed to deceive users into submitting sensitive login information. Analysis indicates the infrastructure mimics legitimate authentication portals, likely targeting corporate or financial service accounts. The site employs social engineering tactics, such as urgent security alerts or password expiration notices, to prompt victims into entering credentials, which are then exfiltrated to attacker-controlled servers. Infrastructure analysis reveals the domain was registered on June 01, 2026, through Dynadot Inc, a registrar frequently observed in phishing operations. It resolves to the IP address 144.172.114.220, which has been flagged by 17 out of 95 security vendors on VirusTotal for malicious activity. Additionally, the domain appears on one security blocklist, further corroborating its malicious classification. The creation date suggests a recently deployed campaign, potentially still active or in rotation with other domains. Users who visited godlike-visit.online or entered credentials on the site should immediately revoke any submitted login details, particularly for accounts associated with financial, email, or corporate services. It is recommended to enable multi-factor authentication on all critical accounts and monitor for unauthorized access attempts. System administrators should block the domain and its associated IP (144.172.114.220) at the network perimeter to prevent further exposure. Victims should also scan their devices for malware, as phishing sites may deploy additional payloads.
Data Coverage
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 12, 2026
10 monitored external feeds No match
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analysis
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive