ksghnfcpaa.cgil.pt
“Error”
Evidence Summary
The domain ksghnfcpaa.cgil.pt has been identified as a generic phishing threat and is currently rated as high risk by PhishDestroy analysts. This domain, now taken offline, was flagged by Google Safe Browsing for phishing activity and appeared on one security blocklist. While no specific brand was impersonated, the generic phishing classification suggests it could have been used for credential harvesting or malware distribution.
Technical analysis reveals that ksghnfcpaa.cgil.pt resolved to IP address 62.193.192.27 and was issued an SSL certificate by Let's Encrypt (R13). The domain was created on March 07, 2026, and at the time of investigation, 26 out of 95 security vendors on VirusTotal flagged it as malicious. The page title displayed an error, indicating the site may have been taken down shortly after detection. Despite the short lifespan, the high flag rate and blocklist presence underscore its dangerous nature.
As the domain is now offline, the immediate threat is mitigated, but users should remain cautious of similar domains. PhishDestroy recommends that users never interact with unsolicited links and always verify website legitimacy through trusted security tools. If you previously visited ksghnfcpaa.cgil.pt, run a full antivirus scan and monitor for suspicious activity. For ongoing protection, rely on real-time threat intelligence from PhishDestroy.
Network Security Intelligence
Forensic History & Detection Timeline
-
Domain Status Transition Mar 10, 2026 · 03:29 UTCDomain state transitioned from alive to dead.
-
Cloudflare Radar Scan Mar 9, 2026 · 03:20 UTCCloudflare Radar scan registered: View Radar report.
-
VirusTotal Detections Update Mar 9, 2026 · 03:17 UTCVirusTotal scanner detections updated from 15 to 27. Added scanner alerts: 0xSI_f33d, BitDefender, Cluster25, DNS8, Forcepoint ThreatSeeker, Gridinsoft, Kaspersky, Phishtank, SOCRadar, SafeToOpen, Trustwave, URLQuery, Webroot. Resolved alerts: OpenPhish.
-
VirusTotal Detections Update Mar 7, 2026 · 15:43 UTCVirusTotal scanner detections updated from 0 to 15. Added scanner alerts: ADMINUSLabs, CRDF, CyRadar, ESET, Emsisoft, Fortinet, G-Data, Google Safebrowsing, Lionic, Mimecast, Netcraft, OpenPhish, Sophos, VIPRE, alphaMountain.ai.
Threat Response Pipeline
Public Blocklist Status
Technologies · 1 identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of ksghnfcpaa.cgil.pt · checked Mar 9, 2026
Community reports
Reported by 1 community member, first seen Mar 7, 2026
- Stored reports
- 1
- Unique reported URLs
- 1
Evidence & External Reports
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive