astr[.]stakingrewards[.]biz
“Google”
astr.stakingrewards.biz — Contenuto non disponibile (HTTP 502). Simulazione del marchio: Google; Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 13 detections (engine total unavailable) (ADMINUSLabs, ChainPatrol, BitDefender, CRDF, CyRadar); PhishDestroy score 89/100.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain astr.stakingrewards.biz was registered on February 21, 2026 and is currently taken offline. Technical checks reveal that it presented an SSL certificate identified as WR2 and received a Gridinsoft trust score of 0 out of 100, indicating a lack of confidence in its legitimacy. DNS resolution points to IP address 142.251.42.132, which is assigned to Google LLC (AS15169) and geolocated to India. The use of a Google‑owned IP may suggest abuse of legitimate infrastructure or a spoofed address, but the precise hosting arrangement remains unclear.
The site’s page title was observed as "Google" and the brand target is explicitly listed as Google, aligning with the reported scam type of credential phishing. Detection services flagged the domain on one known blocklist, PhishDestroy, and VirusTotal recorded 13 detections out of 95 security vendors, confirming that multiple scanners recognized malicious behavior. Given the combination of a brand‑impersonating page title, low trust scores, and vendor detections, the domain is classified with an elevated risk level.
Defenders should immediately block the domain at network perimeter, add the associated IP to deny‑list rules, and ensure that any DNS queries for the domain are intercepted. Continuous monitoring for new domains that resolve to the same Google‑owned IP range is advised, as well as periodic re‑scanning of the IP for potential compromise. Further analysis of the SSL certificate details, HTTP response headers, and any redirection behavior would reduce uncertainty, but current evidence already justifies proactive mitigation.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo