uk[.]paying-lt[.]vip
“Welcome to GOV.UK”
uk.paying-lt.vip — Contenido no disponible (HTTP 502). Tipo de estafa: Generic Phishing. Resumen de las pruebas: VirusTotal 16/93 (ADMINUSLabs, Criminal IP, BitDefender, CRDF, CyRadar); Spamhaus DBL_PHISH; PhishDestroy score 95/100.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
This domain, uk.paying-lt.vip, is a confirmed generic phishing site that was taken offline as of the report date of July 23, 2026. The domain was created on February 21, 2026, and was observed with a page title of 'Welcome to GOV.UK', indicating an attempt to impersonate the UK government's official website. The domain resolves to IP address 151.101.128.144, which is hosted in the United States by AS54113 Fastly, Inc. The SSL certificate was issued by GlobalSign RSA OV SSL CA 2018.
Security vendor detection is significant, with 16 out of 93 security vendors on VirusTotal flagging this domain as malicious. It also appears on one security blocklist and is blocked by PhishDestroy. The domain's risk level was assessed as elevated.
Defenders should ensure that this domain remains blocked and monitor for any related subdomains or variations that may appear under the paying-lt.vip namespace. The exact nature of the scam beyond the page title is not fully analysed, but the combination of government impersonation, recent creation, and multiple vendor flags confirms its malicious intent.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.