chat[.]deliverynexus[.]com[.]br
“Chatwoot”
chat.deliverynexus.com.br — Contenu indisponible. Résumé des preuves: VirusTotal 3/95 (ChainPatrol, alphaMountain.ai, SOCRadar); Google Safe Browsing flagged; PhishDestroy score 80/100. Bureau d’enregistrement: HSTDOMAINS.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain chat.deliverynexus.com.br was a phishing site operating as a delivery scam, designed to deceive victims into believing they were interacting with a legitimate parcel or logistics service. No specific brand was impersonated, and no crypto drainer kit was identified. The site has since been taken offline, but it previously posed an elevated risk to users by attempting to extract personal or financial information under false pretenses.
Technical analysis of chat.deliverynexus.com.br revealed multiple indicators of malicious activity. The domain was flagged by 3 of 95 security vendors on VirusTotal, including ChainPatrol, alphaMountain.ai, and SOCRadar. Google Safe Browsing classified it as a phishing threat under the 'SOCIAL_ENGINEERING' category. It appeared on one security blocklist, PhishDestroy, and had a Gridinsoft trust score of 0 out of 100. The domain was registered through HSTDOMAINS on October 27, 2025, and resolved to the IP address 147.93.182.78, hosted by Contabo Inc. in the US (AS40021). No SSL certificate was present, and the observed page title was 'Chatwoot'.
Users who interacted with chat.deliverynexus.com.br should take immediate steps to secure their accounts. If personal or financial information was entered, change passwords for any affected services and enable two-factor authentication. Monitor bank statements and credit reports for unauthorized transactions. Report the phishing domain to local cybercrime authorities and platforms like Google Safe Browsing or the Anti-Phishing Working Group to aid in takedown efforts. Victims may also submit complaints to consumer protection agencies such as the FTC or their regional equivalent.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif