escueladeprofesionalesvidaestetica[.]com[.]uy
“Vida Estética Centro de Capacitación Profesional S.R.L.”
escueladeprofesionalesvidaestetica.com.uy — Contenuto non disponibile. Tipo di truffa: Generic Phishing. Riepilogo delle prove: VirusTotal 0/91; PhishDestroy score 48/100.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
PhishDestroy identifies an active credential harvesting scam hosted at escueladeprofesionalesvidaestetica.com.uy, targeting users with fake life coaching and beauty professional credential pages. The domain mimics a legitimate Uruguayan vocational training site, using social engineering to trick victims into submitting login credentials under the guise of course enrollment or certification verification. No known brand impersonation or drainer kit integration has been detected at this stage, but the page structure suggests a generic phishing template designed to harvest credentials for resale or further exploitation. The scam likely leverages urgency—such as limited enrollment or certification expiration—to pressure victims into acting quickly.
This domain was flagged with a VirusTotal detection score of 0 out of 95 engines as of the latest scan, indicating it remains under the radar of most antivirus and security platforms. The domain is registered through Let's Encrypt for SSL encryption, resolving to IP address 50.62.141.185. The domain was created recently and has not yet been categorized by Google Safe Browsing (GSB status: unknown), nor does it appear on major threat intelligence blocklists at this time. These factors contribute to its elevated risk profile, as early-stage domains with clean reputations are often weaponized for phishing before detection systems catch up.
As of the most recent assessment, escueladeprofesionalesvidaestetica.com.uy remains active and is actively serving phishing content. PhishDestroy has escalated this threat to our response team and is monitoring for changes in infrastructure or payload delivery. While the immediate risk is categorized as under investigation, users are strongly advised to avoid interacting with this domain and report any suspicious activity. The lack of detections underscores the need for proactive monitoring and user awareness, as this scam may evolve or expand to target additional victims. Remaining risk is high due to the domain's active status and clean reputation at launch.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo