rby-oiwkd[.]nafis330[.]workers[.]dev
“Google”
rby-oiwkd.nafis330.workers.dev — Masqué · accessible. Usurpation de l'identité de la marque : Google; Type d'arnaque : Brand Impersonation. Résumé des preuves: VirusTotal 11/91 (ADMINUSLabs, ChainPatrol, BitDefender, CyRadar, ESET); 2 external blocklist matches (MetaMask, SEAL); cloaking observed; PhishDestroy score 100/100. Bureau d’enregistrement: Cloudflare Workers.
L’analyse détaillée de PhishDestroy AI reste en anglais afin de préserver le relevé forensique original.
The domain rby-oiwkd.nafis330.workers.dev poses a significant security threat by impersonating the Google brand. This type of threat is known as brand impersonation, where attackers create web pages that mimic legitimate brands to deceive users into providing sensitive information. The page title found on this domain is 'Google', indicating its intent to mislead users into believing they are interacting with a genuine Google service. Such phishing attempts can result in unauthorized access to personal data, financial loss, and compromised security.
The credibility of this threat is supported by multiple indicators. The domain is currently flagged by 10 out of 95 security vendors on VirusTotal, highlighting its potential risk. Furthermore, the domain was registered through Cloudflare Workers and resolves to the IP address 188.114.96.3, which is located in California, USA. The SSL certificate for this domain is issued by Google Trust Services, adding a layer of deceptive legitimacy. Despite the future creation date of May 22, 2026, which may suggest a reporting error, it remains critical to address the active status of this domain as it appears on three security blocklists, including PhishDestroy, MetaMask, and SEAL.
If you have visited this domain or suspect you have interacted with it, immediate action is required. Start by changing passwords for accounts that could potentially be compromised and enable two-factor authentication where possible. Monitor your accounts for unauthorized activity and report any suspicious transactions or communications to your financial institution or appropriate authorities. Utilizing updated security software can aid in detecting and preventing further threats. Staying informed about common phishing tactics and practicing caution when encountering unfamiliar websites can significantly reduce the risk of falling victim to such scams.
Processus de réponse aux menaces Pipeline
Statut de la liste de blocage publique
Informations sur les domaines
Détails techniquesDNS, SAN SSL, horodatages
Analyse VirusTotal
Données factuelles et rapports externes
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif