zircuitupdates[.]live
“Even geduld...”
Résumé des preuves
The domain zircuitupdates.live has been identified as a credential phishing threat, specifically designed to impersonate the Zircuit platform. This site attempts to steal login credentials from unsuspecting users by mimicking a legitimate authentication interface. The domain was created on February 21, 2026, and resolves to IP address 172.67.166.111, which is associated with Cloudflare's infrastructure. Security analysis reveals that 2 out of 95 antivirus vendors on VirusTotal flagged this domain as malicious, indicating a moderate but notable detection rate. Additionally, the domain appears on 3 security blocklists, further confirming its malicious intent. Notably, the site lacks an SSL certificate, which is a strong red flag for any legitimate service.
Technical indicators paint a clear picture of the threat. The domain's creation date is recent, suggesting it was set up specifically for this phishing campaign. The IP address 172.67.166.111 is part of Cloudflare's CDN, which can help obscure the true hosting location. Despite this, the absence of HTTPS encryption means any data submitted is transmitted in plain text, making it easy for attackers to intercept credentials. The page title, "Even geduld...", is a Dutch phrase meaning "Please wait...", which may be used to lull victims into a false sense of security while the phishing form loads. Google Safe Browsing likely flags this domain, though specific status is not provided; however, the blocklist presence indicates active monitoring.
Currently, zircuitupdates.live has been taken offline, which is a positive development. However, the risk remains that similar domains may appear or that the same threat actor could launch new campaigns. PhishDestroy recommends that users who may have interacted with this domain change their Zircuit passwords immediately and enable two-factor authentication. Always verify URLs before entering credentials, and rely on official channels to access platforms like Zircuit. The seed for this analysis is 2fe7c3, ensuring unique tracking of this specific threat.
Data Coverage
Processus de réponse aux menaces Pipeline
Couverture des listes de blocage
10 sources externes surveillées · instantané du 11/08/2026
8 sources externes surveillées Aucune correspondance
Chronologie de détection
-
État du domaine
Accessible → Inaccessible
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
-
Cloudflare Radar
Analyse Cloudflare Radar enregistrée · Ouvrir l’analyse
Analyse VirusTotal
Ce site vous a-t-il affecté ?
Si vous avez saisi des informations d'identification de compte, des informations personnelles ou de paiement, ou téléchargé un fichier à partir de ce domaine, agissez immédiatement. Vous trouverez ci-dessous des ressources pour vous aider à signaler l'incident et à vous protéger.
Signalez-le à vos autorités locales
Sélectionnez votre pays pour obtenir contacts officiels en matière de cybercriminalité ou créer un projet de plainte →.
Vérifier n'importe quel domaine
Analyse des menaces à l'aide de listes de blocage stockées, de WHOIS, de DNS et de preuves d'analyse publique
Scanner maintenantSignaler une tentative d'hameçonnage
Signalez les domaines suspects à notre base de données des menaces — protégez la communauté
SignalerFlux d'alertes en temps réel
Rapports de phishing récents et changements de disponibilité observés
SurveillerRestez informés, restez en sécurité
Surveillez les menaces en temps réel ou signalez cette alerte si vous pensez qu'il s'agit d'un faux positif