Lompat ke laporan keamanan
Checked 09/08/2026 Ref 60961437

MALICIOUS — CRITICAL

fliud[.]io

14 of 91 security engines flagged the domain; 3 public blocklists listed it (MetaMask, ScamSniffer, SEAL); the latest stored check returned HTTP 403.

95/100 evidence score · Critical
VirusTotal
14/91
Blocklists
3 · MetaMask, ScamSniffer
Ketersediaan
Dapat dijangkau · akses dibatasi · HTTP 403
2026-07-22 16:22 UTCDapat dijangkau · akses dibatasi · HTTP 403

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 14. Daftar blokir publik yang melaporkan kecocokan: 3. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
Jump to section
Ringkasan laporan

fliud.io — Dapat dijangkau · akses dibatasi (HTTP 403). Ringkasan bukti: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 95/100. Registrar: Namecheap.

Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.

Evidence Digest

Ref 60961437

fliud.io is classified critical with an evidence score of 95/100. 14 of 91 security engines flagged the domain; 3 public blocklists listed it (MetaMask, ScamSniffer, SEAL). Registered 13 May 2026 via NAMECHEAP INC, hosted on 35.208.79.237 (Google Ireland Limited, US). The latest stored check on 9 Aug 2026 returned HTTP 403 and includes a capture.

Stored generated summary (templated)mistral · 22/07/2026

Retained for the record. This text repeats stored detection facts and is not presented as authored analysis.

This domain, fliud.io, was registered on May 13, 2026, through NAMECHEAP INC and remains active as of July 22, 2026. Infrastructure analysis reveals it is hosted on IP address 35.208.79.237 and uses nameservers ns1.siteground.net and ns2.siteground.net, indicating potential shared hosting infrastructure commonly exploited for phishing campaigns. The domain is flagged by 13 of 95 security vendors on VirusTotal and appears on at least one security blocklist, with PhishDestroy already enforcing a block.

No specific brand impersonation or scam category has been confirmed in available data, though the detection patterns align with credential phishing activity. The domain’s recent creation, combined with its presence on security blocklists and vendor detections, suggests it is actively being used for malicious purposes. Defenders should treat this domain as high-risk and prioritize blocking it at the DNS or network level.

Further investigation into the IP address and hosting provider may reveal additional linked domains or infrastructure. Since the exact content of the site has not been analyzed, organizations should monitor for user reports of credential harvesting or other phishing attempts originating from this domain. No SSL certificate details or HTTP response data are currently available to assess additional trust indicators.

VirusTotal
VirusTotal
14 det.
URLScan
URLScan
Sertifikat TLS
Let's Encrypt
Usia
3 mo New
Status terpantau
Dapat dijangkau · akses dibatasi 403
PhishDestroy
Daftar Hapus
Terdaftar
Cakupan data12 recorded checks
VirusTotal 14 / 91 URLQuery tidak diperiksa PhishStats tidak diperiksa OTX no community references CF Radar scan completed URLScan capture laporan yang disimpan URLScan verdict Analisis selesai Pemblokiran DNS tidak diperiksa TLS valid certificate, 79d WHOIS 3 mo old Tangkapan layar 2 captures · 2 sources Rantai pengalihan tidak diselidiki

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
12/14

Status Daftar Blokir Publik

Tangkapan tersimpan

Intelijen Domain

Domain
URLScan Verdict Analisis selesai score 0 report ↗
Server / ASN nginx · AS43515 Google Ireland Limited
Reputasi IP abuse score 0/100 0 reports checked 22/07/2026
Alamat IP 35.208.79.237 US
LokasiUS Council Bluffs, US
JaringanAS43515 · Google Cloud (us-central1)
PendaftaranDibuat 13/05/2026 (87d · New) Expires 13/05/2027
Status HTTP403 Forbidden
Rincian teknisDNS, SAN SSL, cap waktu
Pertama Kali Terdeteksi22/07/2026
DOM Analysisanalyzed 22/07/2026score 95/100
IoC Extractionscanned 29/07/20260 wallet · 0 Telegram IoCs
Submitted URLhttps://fliud.io/
Server namans1.siteground.netns2.siteground.net
MX Records10 mx10.antispam.mailspamprotection.com 20 mx20.antispam.mailspamprotection.com 30 mx30.antispam.mailspamprotection.com
TLS Fingerprint
TLS Observationvalid from 12/07/2026scanned 22/07/2026
Judul Halaman
Fluid
Sertifikat TLS
Valid transport encryption · Diterbitkan oleh Let's Encrypt · valid for 79 days
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

14 / Vendor keamanan 91 menandai domain ini
View on VT
Last analyzed Previous stored snapshot: 13 detections
ADMINUSLabs
alphaMountain.ai
BitDefender
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Kaspersky
Lionic
SOCRadar
Sophos
VIPRE

Bukti Terarsip

Wayback Machine Snapshot
Cuplikan sejarah tersedia untuk tinjauan bukti
View Archive
Analisis Performa Situs

Google PageSpeed Insights — mobile performance audit of fliud.io · checked Jul 22, 2026

72
Needs Work
Performance
FCP
1.8s
First Contentful Paint
LCP
1.95s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
1236ms
Total Blocking Time
SI
3.62s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Analisis Konfigurasi Situs
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
Valid robots.txt; no Disallow/Allow paths were extracted.
Bukti & Laporan EksternalIndependent lookups and source reports
Community Scam Report — ChainAbuse
1 report filed for fliud.io (1 written by a person) · category: Phishing · source checked
“The PhishDestroy system has identified this domain as a phishing threat, flagged both by our internal parser and reported by users. We also cross-reference with public databases and other antivirus systems.”
— reported by Anonymous on Feb 11, 2025 · Source: ChainAbuse (TRM Labs) — full report and evidence there.
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri
Sematkan Laporan IniRead-only HTML widget
HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/fliud.io"
  title="PhishDestroy threat report for fliud.io"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>