phila[.]revenue-ru[.]cc
“phila.revenue-ru.cc”
phila.revenue-ru.cc — सामग्री अनुपलब्ध. साक्ष्य सारांश: VirusTotal 7/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); PhishDestroy score 71/100. रजिस्ट्रार: Dominet (HK).
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
On July 29, 2026 the domain phila.revenue-ru.cc is listed as active with an elevated risk rating. The domain was registered on September 18, 2025 through Dominet (HK) Limited, a registrar known for allowing rapid registration of short‑lived sites. DNS resolution points to the IPv4 address 170.106.51.191, which is the sole hosting endpoint observed for this indicator. Threat intelligence platforms have flagged the domain as malicious: VirusTotal reports 7 of 91 scanned vendors labeling it as malicious, and the domain is currently listed on one public security blocklist.
Additionally, the PhishDestroy service has added the domain to its blocklist, confirming that it is being used for phishing‑related campaigns. No public information is available regarding the site’s SSL certificate, HTTP response codes, or page title, indicating that those artefacts have not yet been captured or released. The limited visibility suggests that the infrastructure may be short‑lived or that the operators are employing fast‑flux techniques to evade detection. Defenders should block the domain at network perimeter devices, update DNS sinkhole feeds, and add the resolving IP address 170.106.51.191 to host‑based deny lists.
Monitoring for credential‑harvesting attempts targeting the same brand or similar domain patterns is advised, as the naming convention implies an attempt to impersonate revenue‑related services. Continuous re‑scanning with multi‑engine platforms such as VirusTotal is recommended to capture any changes in payload or hosting. Organizations should also consider user‑education campaigns that highlight the risk of unsolicited communications referencing revenue or tax authorities, given the domain’s naming strategy. Until further forensic detail is released, the domain remains a credible threat vector and should be treated accordingly.
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
सहेजा गया कैप्चर
डोमेन इंटेलिजेंस
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
वायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।