assitant-luc-jean-info[.]netlify[.]app
“Accès à votre caisse régionale - Crédit Agricole”
assitant-luc-jean-info.netlify.app — Contenuto non disponibile. Simulazione del marchio: Credit Agricole; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 15/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Registrar: Netlify.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain assitant-luc-jean-info.netlify.app is flagged as a brand‑impersonation site targeting Credit Agricole. Technical analysis shows the domain resolves to 18.208.88.157, an Amazon.com, Inc. host located in the United States and assigned to AS14618. The site was hosted on Netlify, as indicated by the registrar information and the presence of Netlify‑specific technology tags, including HSTS enforcement. The TLS certificate in use is a DigiCert Global G2 RSA SHA256 2020 CA1 certificate issued by DigiCert Inc., confirming a valid HTTPS configuration despite the malicious purpose. An HTTP request returns a 404 status, consistent with the current offline state.
The page title observed during the brief scan reads "Accès à votre caisse régionale - Crédit Agricole," directly referencing the targeted brand. VirusTotal recorded 15 detections out of 95 security vendors, demonstrating a moderate level of consensus among scanning engines that the domain is malicious. It appears on one external security blocklist and has been added to the PhishDestroy blocklist, reinforcing its classification as a threat. Scamadviser assigns a trust score of 1 / 100, reflecting extremely low legitimacy. Nameserver records point to dns1.p04.nsone.net and dns2.p04.nsone.net, confirming the hosting infrastructure.
The primary gaps in the current intelligence are the lack of a detailed payload sample and the absence of observed phishing page content beyond the title, leaving the exact user‑interaction flow undocumented. Defenders should immediately block the domain at network perimeters, update URL filtering lists with the observed indicators, and monitor for any outbound connections to the associated IP address. Incident response teams should also consider searching internal logs for any traffic to this domain or the Netlify‑hosted IP range, as compromised credentials may have been attempted.
Indicatori di sicurezza
Informazioni sulla sicurezza di rete
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Tecnologie · 2 identified
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com Confidenza al 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confidenza al 100%Analisi di VirusTotal
Prove archiviate
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo