phila[.]revenue-zp[.]cc
“Florida Dept. of Revenue Florida Dept. of Revenue”
phila.revenue-zp.cc — Contenu indisponible. Usurpation de l'identité de la marque : Govphil. Résumé des preuves: VirusTotal 14/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLScan malicious verdict; PhishDestroy score 92/100. Bureau d’enregistrement: Dominet (HK).
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain phila.revenue-zp.cc has been identified as an active phishing operation as of July 29, 2026. Registration records confirm it was created on September 17, 2025, using the registrar Dominet (HK) Limited. The domain currently resolves to the IP address 43.130.77.166. Multiple security sources have flagged this domain: PhishDestroy has added it to their blocklist, and it appears on at least one public security blocklist. Additionally, VirusTotal data indicates that 14 out of 91 security vendors have classified this domain as malicious, underscoring a significant consensus in the security community regarding its risk profile.
At present, there is no evidence in the available intelligence to attribute this domain to a specific scam category or brand impersonation campaign. The precise content and tactics used on the associated phishing site have not yet been independently analyzed. However, the elevated detection rate and blocklist presence demonstrate a clear risk to users and organizations. The infrastructure, including the registrar and hosting, does not inherently increase or decrease risk based on current data, but defenders should note the use of a Hong Kong–based registrar, which may complicate certain takedown processes.
Security teams should immediately block phila.revenue-zp.cc at network and endpoint levels, monitor for related activity on IP 43.130.77.166, and review historical communications for potential compromise involving this domain. As the site remains active, further analysis should be conducted to determine the full scope of the threat. Any engagement with this domain should be considered high risk pending additional intelligence.
Renseignements sur la sécurité réseau
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Capture enregistrée
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif