ezpass[.]paykie[.]cc
ezpass.paykie.cc — No verificado. Tipo de estafa: Credential Phishing. Resumen de las pruebas: VirusTotal 10/91 (BitDefender, CyRadar, ESET, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 88/100. Registrador: Gname.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain, ezpass.paykie.cc, is confirmed as a credential harvesting phishing site designed to mimic legitimate toll payment authentication portals. Analysis indicates the infrastructure was established to deceive users into submitting sensitive login credentials, payment details, or personally identifiable information under false pretenses. No specific drainer kit signatures have been identified, but the domain exhibits classic phishing characteristics, including SSL encryption and brand impersonation of toll service providers. Infrastructure analysis reveals the following technical indicators: the domain was registered on June 12, 2024, through Gname.com Pte. Ltd., a registrar commonly associated with short-lived malicious domains. VirusTotal detection metrics show 10 out of 95 security vendors flagging the domain as malicious, with a focus on phishing-related threats. The domain appears on a single security blocklist, and its SSL certificate is issued by Google Trust Services, a tactic frequently observed in phishing campaigns to lend false legitimacy. No associated IP address or Google Safe Browsing (GSB) status is currently available, but the domain's rapid detection by multiple engines suggests a high-risk profile. As of the latest assessment, ezpass.paykie.cc has been taken offline, likely in response to security vendor detections and blocklist inclusion. However, residual risk remains due to potential credential exposure from prior interactions. Users who accessed the domain are advised to rotate any submitted credentials immediately and monitor accounts for unauthorized activity. Organizations should update internal blocklists to include this domain and conduct retrospective log analysis to identify potential compromise indicators. The domain's short lifespan and rapid takedown align with common phishing campaign patterns, emphasizing the need for proactive monitoring of newly registered domains with similar characteristics.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Captura guardada
Inteligencia de dominios
Detalles técnicosDNS, SAN de SSL, marcas de tiempo
Tecnologías · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100 % de confianzaHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100 % de confianzaAnálisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.