wbillbell[.]netlify[.]app
“Sign in to your Account”
Evidence Summary
On 2026-08-07, wbillbell.netlify.app was classified as a generic phishing site with an elevated risk rating. The domain resolves to the IPv4 address 63.176.8.218, which is associated with the Netlify hosting platform. Static analysis on VirusTotal returned detections from 15 of 91 scanned security vendors, indicating a moderate level of consensus among scanners that the host may be malicious.
The domain is listed on a single external blocklist and is actively blocked by the PhishDestroy service, providing additional confirmation of its hostile intent. The current infrastructure details, such as registrar information, SSL certificate parameters, and HTTP response codes, were not supplied and therefore remain unknown. No public Safe Browsing or OTX entries were referenced in the available intelligence, and no page title or brand identifiers have been disclosed, limiting the ability to attribute the phishing campaign to a specific victim brand.
Defenders should prioritize blocking traffic to 63.176.8.218 and adding wbillbell.netlify.app to internal deny lists. Continuous monitoring of the domain’s DNS resolution and periodic rescanning on VirusTotal are recommended to capture any changes in detection rates or additional vendor flags. Given the active status and the presence on at least one blocklist, organizations should treat any email or web interaction involving this domain as potentially malicious until further verification can be performed.
Data Coverage
Network Security Intelligence
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 11, 2026
10 monitored external feeds No match
Detection timeline
-
First recorded
First stored value: Reachable
Technologies
2 high-confidence technologies identified
VirusTotal Analysis
Archived Evidence
Site Performance Analysis
Google PageSpeed Insights — mobile performance audit of wbillbell.netlify.app · checked Aug 7, 2026
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive