voting-linea[.]xyz
“Linea Rewards Update”
voting-linea.xyz — Contenido no disponible (HTTP 502). Suplantación de marca: Google; Tipo de estafa: Tech Support Scam. Resumen de las pruebas: VirusTotal 14/93 (ChainPatrol, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLScan malicious verdict; Spamhaus DBL_PHISH; 1 external blocklist match (ScamSniffer); PhishDestroy score 92/100.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
Analysis of voting-linea.xyz shows that the domain was registered on 21 February 2026 and is currently offline. The site presented a page titled “Linea Rewards Update” and claimed to impersonate Google, consistent with the reported tech‑support scam classification. The domain resolves to 104.21.9.74, an address owned by Cloudflare, Inc. (AS13335) located in the United States. TLS inspection reveals a certificate identified as “WE1”, indicating the use of a generic or possibly compromised certificate rather than a Google‑issued chain.
VirusTotal scans returned 14 positive detections out of 93 participating scanners, confirming that multiple security vendors consider the site malicious. Independent blocklist feeds have added the domain to two separate blocklists, and it is actively listed by PhishDestroy and ScamSniffer, reinforcing the malicious reputation. No Safe Browsing or Open Threat Exchange entries are referenced in the available data, leaving those sources unverified for this indicator.
Because the site is already taken offline, immediate mitigation focuses on preventing future resolution attempts; defenders should add the domain and its IP address to local deny lists, enforce DNS‑level blocking, and monitor for any re‑registration attempts. Continued observation of Cloudflare‑associated IP ranges for similar patterns is recommended, as the infrastructure is commonly reused by threat actors. At present, the only concrete evidence consists of the page title, registration date, hosting details, SSL certificate label, vendor detection count, and blocklist listings; any additional behavioural characteristics of the payload or victim interaction remain unknown pending further investigation.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Análisis de VirusTotal
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.