camerica[.]co[.]com
“www.camerica.co.com”
Résumé des preuves
This domain, camerica.co.com, is actively engaged in credential harvesting phishing operations targeting users through deceptive login interfaces. Analysis indicates the site mimics legitimate authentication portals to capture sensitive credentials, including usernames, passwords, and potentially multi-factor authentication tokens. The infrastructure is designed to exploit trust in well-known brands or services, redirecting victims to fraudulent pages that closely resemble genuine platforms. Given its long-standing registration and current activity, this domain poses a significant risk to both individual and organizational security, particularly for those unaware of phishing tactics or lacking endpoint protection. Infrastructure analysis reveals the domain was registered on August 16, 1997, through Moniker Online Services LLC, a registrar historically associated with abusive registrations. It currently resolves to the IP address 188.114.97.3, hosted on autonomous system AS13335, a network frequently utilized for bulletproof hosting and content delivery. The domain is flagged by 17 out of 95 security engines on VirusTotal, indicating widespread detection as malicious. Additionally, it appears on four independent security blocklists, including those maintained by threat intelligence communities and browser-based protection systems. The absence of an SSL certificate further underscores the lack of basic security measures, increasing the likelihood of interception or tampering during credential transmission. Users who have visited camerica.co.com or interacted with its content are advised to take immediate remedial action. First, revoke any credentials entered on the site, particularly those reused across multiple platforms. Reset passwords for all associated accounts using a secure, password-managed solution to generate unique, complex credentials. Enable multi-factor authentication where available, preferably using app-based or hardware tokens rather than SMS-based methods. Monitor financial and communication accounts for unauthorized activity, and report any suspicious transactions to the relevant service providers. Organizations should block the domain and its resolving IP at the network perimeter and conduct internal investigations to determine if any credentials were compromised. Endpoint detection systems should be updated to include this domain in their threat intelligence feeds to prevent future exposure.
Data Coverage
Signaux de sécurité
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 12/08/2026
7 sources externes surveillées Aucune correspondance
Chronologie de détection
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif