Analysis of eventchecker-rq.netlify.app as of August 01, 2026 shows the domain is still active and linked to a phishing operation. The domain is registered through Netlify and resolves to 35.157.26.135, an address belonging to Netlify’s AWS‑based hosting infrastructure. No authoritative name server records were returned (NS_NOT_FOUND), which aligns with Netlify’s managed DNS service. The site was submitted to VirusTotal and examined by 91 security engines; none reported a detection at the time of scanning.
Although a clean result does not guarantee safety, it does not conflict with other abuse indicators. The domain appears on one external blocklist and is actively blocked by the PhishDestroy service, confirming that threat‑intelligence feeds have identified it as malicious. Currently there is no publicly available SSL/TLS certificate data, HTTP status code, or page‑title metadata from the collected intelligence, leaving the exact landing‑page content and targeted brand unverified.
Consequently, the specific phishing lure and credential‑capture mechanism cannot be confirmed without direct observation. Defenders should add eventchecker-rq.netlify.app to internal deny lists, enforce DNS‑based filtering for the IP 35.157.26.135, and consider blocking Netlify as a hosting provider for related traffic. Ongoing monitoring for changes in DNS records, new blocklist listings, or future VirusTotal detections is recommended.