http://courier542240.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encoding“The Courier Guy”
courier542240.netlify.app — Contenu indisponible (HTTP 404). Usurpation de l'identité de la marque : Base. Résumé des preuves: VirusTotal 7/91 (ESET, Emsisoft, Fortinet, LevelBlue, Netcraft); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 83/100. Bureau d’enregistrement: Netlify.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
Analysis of courier542240.netlify.app shows that the domain is actively hosted on Netlify infrastructure and resolves to the IPv4 address 63.176.8.218. The domain appears on one public security blocklist and is explicitly blocked by the PhishDestroy service, indicating that at least one trusted threat‑sharing platform has flagged it as malicious. VirusTotal scans have recorded detections from seven out of ninety‑one submitted security vendors, reinforcing the likelihood of abuse.
DNS queries for the domain return no authoritative nameserver records, reported as NS_NOT_FOUND, which suggests a possible reliance on Netlify's default DNS handling rather than a custom configuration. The registrar information confirms Netlify as the hosting provider, consistent with the Netlify‑specific subdomain pattern. No additional intelligence such as page titles, SSL certificate details, or HTTP response codes is currently available, leaving the exact payload or visual content of the site unverified.
Given the combination of blocklist presence, multiple vendor detections, and the active hosting status, defenders should treat the domain as high‑risk. Recommended mitigations include adding the domain to outbound web filters, updating intrusion detection signatures to flag traffic to 63.176.8.218, and monitoring DNS logs for any resolution attempts. Continuous re‑assessment is advised should further content analysis become available.
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com Confiance à 100 %HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confiance à 100 %Google Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com Confiance à 100 %Google Analytics is a free web analytics service that tracks and reports website traffic.
google.com Confiance à 100 %Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com Confiance à 100 %Google PageSpeed Insights — mobile performance audit of courier542240.netlify.app · checked Jul 29, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://courier542240.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingSi vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerRapports de phishing récents et changements de disponibilité observés
SurveillerSurveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif