http://courier542240.netlify.app/HTTP 404
3.1 KB
1.4 KB
0 internal · 1 external
Content-Type: text/htmlServer: NetlifyAll stored response-header names (5)
Content-TypeDateServerX-Nf-Request-IdTransfer-Encoding“The Courier Guy”
courier542240.netlify.app — Contenuto non disponibile (HTTP 404). Simulazione del marchio: Base. Riepilogo delle prove: VirusTotal 7/91 (ESET, Emsisoft, Fortinet, LevelBlue, Netcraft); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 83/100. Registrar: Netlify.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Analysis of courier542240.netlify.app shows that the domain is actively hosted on Netlify infrastructure and resolves to the IPv4 address 63.176.8.218. The domain appears on one public security blocklist and is explicitly blocked by the PhishDestroy service, indicating that at least one trusted threat‑sharing platform has flagged it as malicious. VirusTotal scans have recorded detections from seven out of ninety‑one submitted security vendors, reinforcing the likelihood of abuse.
DNS queries for the domain return no authoritative nameserver records, reported as NS_NOT_FOUND, which suggests a possible reliance on Netlify's default DNS handling rather than a custom configuration. The registrar information confirms Netlify as the hosting provider, consistent with the Netlify‑specific subdomain pattern. No additional intelligence such as page titles, SSL certificate details, or HTTP response codes is currently available, leaving the exact payload or visual content of the site unverified.
Given the combination of blocklist presence, multiple vendor detections, and the active hosting status, defenders should treat the domain as high‑risk. Recommended mitigations include adding the domain to outbound web filters, updating intrusion detection signatures to flag traffic to 63.176.8.218, and monitoring DNS logs for any resolution attempts. Continuous re‑assessment is advised should further content analysis become available.
Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com Confidenza al 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org Confidenza al 100%Google Tag Manager is a tag management system (TMS) that allows you to quickly and easily update measurement codes and related code fragments collectively known as tags on your website or mobile app.
www.google.com Confidenza al 100%Google Analytics is a free web analytics service that tracks and reports website traffic.
google.com Confidenza al 100%Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com Confidenza al 100%Google PageSpeed Insights — mobile performance audit of courier542240.netlify.app · checked Jul 29, 2026
Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.
http://courier542240.netlify.app/Content-Type: text/htmlServer: NetlifyContent-TypeDateServerX-Nf-Request-IdTransfer-EncodingSe hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaSegnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraControlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo