voting-virtual[.]co
Análisis de phishing y seguridad de voting-virtual.co
“404 Not Found”
voting-virtual.co — Último activo conocido (HTTP 200). Tipo de estafa: Banking Phishing. Resumen de las pruebas: VT 3/93 (ADMINUSLabs, Kaspersky, SOCRadar); URLScan no malicious verdict; GSB no flag; BL 0; PD 74/100. Registrador: OwnRegistrar.
El análisis detallado de PhishDestroy AI se mantiene en inglés para conservar el registro forense original.
PhishDestroy first observed voting-virtual.co on Jan 24, 2026. A positive finding was recorded by VirusTotal. Evidence score: 74/100.
VirusTotal recorded 3 detections among 93 engines: ADMINUSLabs, Kaspersky, SOCRadar on Jul 18, 2026 at 16:45 UTC. The external blocklist snapshot contained no matches on Aug 7, 2026 at 14:20 UTC. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC. URLScan completed without a malicious verdict (score 0) on Mar 26, 2026 at 12:02 UTC.
HTTP 200 was recorded on Aug 7, 2026 at 10:30 UTC. Registration records list OwnRegistrar, Inc. as the registrar. At collection time, the domain resolved to 172.67.128.246. Captured page title: “404 Not Found”. PhishDestroy classified the observed content as Banking Phishing. DOM analysis completed on Jul 21, 2026 at 02:20 UTC; stored DOM score 0/100. IoC extraction completed on Jul 29, 2026 at 02:38 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis24/07/2026
Analysis of the domain voting-virtual.co indicates an active high-risk phishing campaign targeting banking credentials, operational as of July 24, 2026. The domain was registered on February 21, 2026, through OwnRegistrar, Inc., a registrar previously associated with fraudulent domain registrations. Infrastructure analysis reveals Cloudflare hosting (AS13335), with the domain resolving to IP 172.67.128.246, geolocated in the United States. Nameservers julio.ns.cloudflare.com and sima.ns.cloudflare.com further confirm Cloudflare infrastructure, while detected technologies include HTTP/3, consistent with modern phishing kits designed to evade detection.
The domain is flagged on three security blocklists, including PhishDestroy, MetaMask, and SEAL, reflecting confirmed malicious activity. Despite a 404 Not Found page title, the HTTP status returns 200, suggesting server-side cloaking or a temporary inactive state while retaining operational infrastructure. VirusTotal reports three security vendors flagging the domain as malicious, though the absence of broader detection does not preclude its threat status. The SSL certificate, issued by Google Trust Services (WE1), provides no inherent legitimacy, as phishing domains frequently leverage valid certificates to appear trustworthy.
Current evidence classifies this as a banking phishing campaign, though the exact brand impersonation remains unconfirmed due to the lack of visible page content. Defenders are advised to block the domain and associated IP at the network level, monitor for related subdomains or redirects, and correlate with existing threat intelligence feeds. Given the domain's persistence and Cloudflare hosting, takedown efforts may require registrar engagement, though OwnRegistrar's historical responsiveness to abuse reports remains inconsistent.
Proceso de respuesta ante amenazas Pipeline
Estado de la lista de bloqueados pública
Tecnologías · 2 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análisis de VirusTotal
Evidencias archivadas
Datos y informes externos
¿Te ha afectado esta página web?
Si ingresó credenciales de cuenta, información personal o de pago, o descargó un archivo de este dominio, tome medidas inmediatas. A continuación encontrará recursos que le ayudarán a informar el incidente y protegerse.
Informa a las autoridades locales
Seleccione su país para obtener contactos oficiales de cibercrimen o crear un borrador de queja →.
Acerca de este informe: voting-virtual.co
Este informe presenta la última evidencia almacenada disponible para PhishDestroy. Las marcas de tiempo de origen se muestran cuando están disponibles; La disponibilidad y los veredictos de los proveedores pueden cambiar después de la recolección.
El sitio capturado mostraba el título de la página “404 Not Found”.
A partir de 07/08/2026, voting-virtual.co tuvo detecciones de los motores de seguridad 3.
Si cree que esta lista es inexacta, presentar una apelación. Para conocer nuestra metodología, visita el Página de preguntas frecuentes.
Comprobar cualquier dominio
Análisis de amenazas utilizando listas de bloqueo almacenadas, WHOIS, DNS y evidencia de escaneo público
Escanear ahoraDenunciar un intento de phishing
Envía los dominios sospechosos a nuestra base de datos de amenazas: protege a la comunidad
DenunciarFlujo de amenazas en tiempo real
Informes de phishing recientes y cambios de disponibilidad observados
MonitorizarMantente informado, mantente a salvo
Supervisa las amenazas en tiempo real o impugna esta entrada si crees que se trata de un falso positivo.