bellsouth-att-sign-in-5c7603[.]webflow[.]io
“bellsouth att sign in”
bellsouth-att-sign-in-5c7603.webflow.io — Contenu indisponible. Usurpation de l'identité de la marque : AT&T; Type d'arnaque : Generic Phishing. Résumé des preuves: VirusTotal 17/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 95/100. Bureau d’enregistrement: NameCheap.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain bellsouth-att-sign-in-5c7603.webflow.io, which impersonates AT&T, has been flagged by 17 out of 95 vendors on VirusTotal, indicating a significant recognition of its malicious intent. The site has been taken down and is currently offline, but it was previously hosted by Cloudflare, Inc. in the US. Google Safe Browsing has also flagged this domain, further confirming its threat level.
Registered through NameCheap, Inc., this phishing domain targeted AT&T customers by mimicking a legitimate sign-in page. The domain was created on February 21, 2026, and was detected by PhishDestroy on the same day, demonstrating the rapid identification capabilities of our threat intelligence pipeline. The page's title, "bellsouth att sign in," was designed to deceive users into entering their credentials, potentially leading to unauthorized access to their accounts.
While the domain is now offline, its initial setup highlights the ongoing threat of telecom-related phishing attacks. The use of a legitimate SSL certificate from Google Trust Services might have lent an appearance of authenticity, potentially tricking users into believing the site was secure. The swift action to take the site down and its inclusion in public blocklists, including PhishDestroy's, underscores the importance of early detection and response in mitigating such threats. Despite its current status, the domain's brief activity period serves as a reminder of the persistent and evolving nature of phishing campaigns.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Technologies · 2 identified
Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com Confiance à 100 %HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org Confiance à 100 %Analyse VirusTotal
Preuves archivées
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif