सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 11। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

phila[.]revenuefe[.]cc

“502 Bad Gateway”

धमकी भरा फैसला गंभीर 88/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
वायरस का कुल पता लगाना: 11/91
13/06/2026
रिपोर्ट सारांश

phila.revenuefe.cc — असत्यापित. साक्ष्य सारांश: VirusTotal 11/91 (BitDefender, Chong Lua Dao, CyRadar, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 88/100. रजिस्ट्रार: Dominet (HK).

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
CCE638C0
स्कोर
88/100

PhishDestroy identifies phila.revenuefe.cc as a phishing domain specifically targeting city tax refund applicants. This site mimics official Philadelphia revenue portals to trick users into submitting sensitive financial information, such as Social Security numbers, bank account details, and credit card numbers. The goal is to steal identities or drain funds by posing as a legitimate tax refund service. Users who land on this page may see fake login forms, urgent payment requests, or false refund status updates designed to create panic and prompt immediate action. This domain was flagged after security researchers observed its suspicious infrastructure, despite currently showing 0 detections out of 95 engines on VirusTotal. The site resolves to the IP address 43.166.241.242 and has since been taken offline, though similar domains may reappear. Records indicate the domain was registered through an offshore registrar, often used to obscure ownership and delay takedowns. The lack of initial detections highlights how new phishing campaigns can evade automated scanners until reported by users or researchers. If you visited phila.revenuefe.cc or entered any information, take immediate action to protect yourself. First, change passwords for any accounts linked to the site, especially financial or email accounts. Enable two-factor authentication wherever possible. Next, monitor your bank statements and credit reports for unauthorized transactions or new accounts opened in your name. Consider placing a fraud alert or credit freeze with major credit bureaus. Report the incident to the Federal Trade Commission at ReportFraud.ftc.gov and to your local police if financial loss occurred. Never respond to follow-up emails or calls claiming to help recover lost funds, as these are often secondary scams.

VirusTotal
VirusTotal
11 det.
TLS प्रमाणपत्र
समाप्त या असत्यापित -289d
आयु
2 mo New
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
डेटा कवरेज VirusTotal 11 / 91 यूआरएलक्वेरी जाँच नहीं की गई फ़िशस्टैट्स जाँच नहीं की गई ओटीएक्स no community references सीएफ रडार scan completed URLScan capture not submitted URLScan verdict निष्कर्ष उपलब्ध नहीं डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है 2 mo old स्क्रीनशॉट बाहरी कैप्चर चेन पुनर्निर्देशित करें जांच नहीं की गई

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
7/9

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

पेज शीर्षक
502 Bad Gateway
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता DigiCert Inc / Encryption Everywhere DV TLS CA - G2

डोमेन इंटेलिजेंस

डोमेन
सर्वर / ASN nginx/1.14.1 · AS132203 Tencent Building, Kejizhongyi Avenue
IP प्रतिष्ठा abuse score 0/100 0 reports checked 12/08/2026
Registrar (base domain) Dominet (HK) HK(HK)
IP पता 43.166.241.242 US
भौगोलिक स्थानUS Ashburn, US
नेटवर्कAS132203 · Aceville Pte.ltd
रिवर्स IPviewdns.info → rapiddns.io →
Registration (base domain)revenuefe.cc · निर्मित 12/06/2026 (67d · New)
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला13/06/2026
नेमसर्वरns8.alidns.com
TLS Fingerprint
TLS Observationvalid from 04/11/2024scanned 26/06/2026
TLS SAN Domainscallback.admile.xyz
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

11 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed Previous stored snapshot: 11 detections
BitDefender
Chong Lua Dao
साइरेडार
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Lionic
SOCRadar
सोफोस
वेबरूट

साक्ष्य और बाहरी रिपोर्टें

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/phila.revenuefe.cc"
  title="PhishDestroy threat report for phila.revenuefe.cc"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>