state[.]segpay[.]cc
Résumé des preuves
PhishDestroy has uncovered a malicious domain, state.segpay.cc, designed to harvest user credentials through deceptive login portals. This site mimics legitimate payment processing services, tricking visitors into entering sensitive account details such as usernames, passwords, and financial information. Once captured, these credentials are often exploited for unauthorized transactions, identity theft, or sold on dark web marketplaces, posing significant risks to both individuals and organizations. Evidence supporting this assessment includes detections from 4 out of 95 security vendors on VirusTotal, indicating a consensus among cybersecurity tools about its malicious nature. The domain was registered through an obscure registrar, with records showing recent creation—suggesting a short-lived operation typical of phishing campaigns. Additionally, blocklist monitoring services have already flagged state.segpay.cc, further confirming its involvement in fraudulent activities. The associated IP address, 170.106.51.191, has been linked to other suspicious domains, reinforcing concerns about its legitimacy. Users who visited state.segpay.cc or entered any credentials on the site should take immediate action to mitigate potential damage. First, change passwords for all accounts that may have been exposed, prioritizing financial, email, and work-related logins. Enable multi-factor authentication wherever possible to add an extra layer of security. Monitor bank statements and credit reports for unusual activity, and consider placing a fraud alert with credit bureaus if financial details were submitted. Finally, report the incident to your organization’s IT security team or a trusted cybersecurity provider to assist in further investigation and containment efforts.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
10 sources externes surveillées Aucune correspondance
Informations sur les domaines
Détails techniquesDNS, noms TLS et horodatages
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif