phila[.]revenuelxb[.]cc
“502 Bad Gateway”
phila.revenuelxb.cc — Belum terverifikasi. Jenis penipuan: Generic Phishing. Ringkasan bukti: VirusTotal 10/91 (BitDefender, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft); PhishDestroy score 80/100. Registrar: Dominet (HK).
Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.
This domain, phila.revenuelxb.cc, is identified as a generic phishing threat designed to harvest financial credentials or sensitive user data. Analysis indicates no direct association with a specific brand or drainer kit, though its infrastructure aligns with common phishing campaigns targeting login portals, payment systems, or corporate credentials. The domain exhibits characteristics typical of opportunistic phishing operations, likely leveraging social engineering tactics to deceive victims into submitting confidential information. Infrastructure analysis reveals the following technical indicators: the domain resolves to the IP address 43.166.241.242 and was registered on June 12, 2026, through Dominet (HK) Limited. VirusTotal detections show 5 out of 95 security vendors flagging the domain as malicious. The SSL certificate is issued by DigiCert Inc, which, while legitimate in origin, does not mitigate the domain's malicious intent. The domain appears on one security blocklist, and its current status in Google Safe Browsing (GSB) is not explicitly stated but is presumed to be flagged given its offline status. The creation date, set in the future (2026), suggests potential typosquatting or preemptive registration for malicious use. As of the latest assessment, phila.revenuelxb.cc has been taken offline, likely due to remediation efforts by hosting providers or registrars. However, the elevated risk persists due to the domain's recent malicious activity and the possibility of infrastructure reuse. Organizations and individuals are advised to block the domain and its associated IP (43.166.241.242) at the network level. End-users should remain vigilant for similar phishing attempts, particularly those mimicking financial institutions or corporate login pages. Monitoring for related domains registered through the same registrar or resolving to the same IP range is recommended to preempt further threats.
Intelijen Keamanan Jaringan
Alur Tanggapan Ancaman Pipeline
Status Daftar Blokir Publik
Tangkapan tersimpan
Intelijen Domain
Rincian teknisDNS, SAN SSL, cap waktu
Analisis VirusTotal
Bukti & Laporan Eksternal
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive