aethir[.]beefy[.]bar
“Google”
aethir.beefy.bar — Contenido no disponible (HTTP 502). Suplantación de marca: Google; Tipo de estafa: Brand Impersonation. Resumen de las pruebas: VirusTotal 8/95 (ChainPatrol, BitDefender, CyRadar, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 74/100. Registrador: Dynadot.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain is flagged for elevated risk due to brand impersonation targeting Google authentication portals. Analysis indicates the infrastructure was designed to harvest user credentials by mimicking legitimate login interfaces, a tactic commonly associated with credential theft operations. The page title explicitly displayed 'Google,' reinforcing the intent to deceive users into disclosing sensitive account information. Infrastructure analysis reveals the domain aethir.beefy.bar was registered through Dynadot LLC on October 01, 2025, and resolved to the IP address 142.250.80.100. Security vendor detection on VirusTotal reached 8 out of 95 engines, while the domain appeared on at least one security blocklist. The low detection ratio suggests either a newly deployed campaign or evasion techniques employed to bypass initial scrutiny. The registrar, Dynadot LLC, is frequently utilized in both legitimate and malicious registrations, providing no definitive attribution but indicating a potential vector for abuse. Mitigation against this specific threat type requires layered defenses. Organizations should implement domain-based blocking for aethir.beefy.bar and monitor for related subdomains or newly registered lookalike domains. Endpoint protection systems should be configured to detect and block credential harvesting pages, particularly those impersonating authentication portals. User awareness training should emphasize verifying domain authenticity before entering credentials, especially for high-value targets like Google services. Network-level monitoring for connections to 142.250.80.100 during the campaign's active window may also aid in identifying compromised systems.
Inteligencia de seguridad de red
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
ICANN OVERSIGHT
Registration: beefy.bar
Acreditación y contexto RAA
Acreditación y contexto RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain beefy.bar behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Inteligencia forense
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.