instragam-login-oficial[.]netlify[.]app
“Instagram - Login”
Analysis of the domain instragam-login-oficial.netlify.app, conducted on August 02, 2026, indicates it is an active credential phishing site targeting users of a major social media platform. The domain is hosted on Netlify infrastructure and resolves to the IP address 63.176.8.218. Infrastructure analysis reveals the domain lacks configured nameservers, a common but not definitive indicator of malicious intent, particularly in phishing campaigns where rapid deployment and evasion are prioritized. The domain is currently flagged by 1 security blocklist, specifically PhishDestroy, and has been detected by 12 of 91 security vendors on VirusTotal, confirming its classification as a high-risk threat.
The domain's registration details point to Netlify as the hosting provider, which is frequently exploited for phishing due to its free and easily accessible hosting services. While the exact content of the site has not been analyzed, the domain name—containing 'instragam' and 'login-oficial'—strongly suggests an attempt to deceive users into believing it is an official login portal for Instagram. Defenders should note that the domain remains active as of the report date, and no evidence of takedown or remediation has been observed. Organizations and security teams are advised to block this domain at the DNS and proxy levels, as well as in endpoint protection solutions.
Given the domain's presence on a security blocklist and its detection by multiple vendors, it is reasonable to classify this as a confirmed phishing threat. No additional details regarding the phishing kit, targeted brand confirmation beyond the domain name, or user interaction data are available at this time. Further investigation into the IP address 63.176.8.218 may reveal additional associated malicious domains or infrastructure.
Network Security Intelligence
Threat Response Pipeline
Public Blocklist Status
Threat Intel Cross-Reference · source references
Technologies · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 100% confidenceHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% confidenceVirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of instragam-login-oficial.netlify.app · checked Aug 2, 2026
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive