PhishDestroy first observed telos.run on Jul 31, 2026. The captured page title is “Index of /”. Current evidence score: 100/100 (critical).
Positive findings are stored from 2 sources: VirusTotal and URLQuery. VirusTotal recorded 12 detections among 91 engines: alphaMountain.ai, Cluster25, CRDF, ESET, Forcepoint ThreatSeeker, G-Data, Gridinsoft, Kaspersky, MalwareURL, SOCRadar, Sophos, URLQuery on Aug 1, 2026 at 02:11 UTC. URLQuery recorded 1 threat-system alert on Jul 31, 2026 at 00:16 UTC. Non-positive and contextual checks: The separate external-blocklist snapshot contained no matches on Aug 8, 2026 at 10:20 UTC. Google Safe Browsing returned no flag on Jul 31, 2026 at 00:15 UTC. URLScan completed without a malicious verdict (score 0) on Aug 1, 2026 at 03:30 UTC.
HTTP 200 was recorded on Aug 8, 2026 at 10:26 UTC. Registration records for the domain list GoDaddy.com, LLC as the registrar and Feb 19, 2022 as the creation date. At collection time, the hostname resolved to 177.8.248.45 on AS263579 (ISUPER TELECOMUNICACOES INFO LTDA). The recorded endpoint location is Marialva, BR. The stored server header is Apache. The evidence archive retains 4 visual captures from PhishDestroy, URLScan, and URLQuery. TLS metadata lists Let's Encrypt as the certificate issuer with validity through Oct 2, 2026; checked Jul 31, 2026 at 01:02 UTC.
The content indicators and 2 positive source findings support the current phishing classification. The stored fields do not identify an impersonated brand or victim interaction.