order27895[.]netlify[.]app
“WeTransfer”
Riepilogo delle prove
PhishDestroy identifies order27895.netlify.app as a high-risk social engineering phishing domain actively impersonating legitimate order systems. This platform masquerades as a transactional portal to harvest credentials and payment details from unsuspecting users. The threat actor leverages Netlify’s infrastructure to host a convincing replica of an order management interface, complete with SSL encryption (DigiCert Inc) to appear legitimate. Users interacting with this domain risk exposing sensitive data including login credentials, payment card numbers, and personally identifiable information, which are subsequently weaponized for financial fraud or identity theft. This domain was flagged by Google Safe Browsing under SOCIAL_ENGINEERING and is currently resolving to IP 35.157.26.135. VirusTotal analysis confirms 10 out of 95 security vendors have detected malicious activity associated with this domain. Registered through Netlify, the domain has been active long enough to accumulate these detections, indicating ongoing abuse. The presence of an SSL certificate issued by DigiCert Inc further enhances its deceptive credibility, as modern browsers display the padlock icon despite the domain’s malicious intent. If you visited order27895.netlify.app, PhishDestroy strongly advises immediate action to secure your accounts and data. Disconnect from the site immediately and avoid entering any credentials or payment information. Scan your device for malware using updated antivirus software and consider changing passwords for any accounts that may have been exposed. Report the domain to Netlify and your cybersecurity team to aid in takedown efforts. Monitor financial statements and credit reports closely for signs of fraud. PhishDestroy recommends using a password manager with phishing detection capabilities to prevent future visits to similar malicious domains.
Data Coverage
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | order27895.netlify.app/?naps |
malware | Detects file containing Telegram Bot API |
| OpenDNS | order27895.netlify.app |
phishing | Phishing Block |
Pipeline di risposta alle minacce
Copertura delle blocklist
10 fonti esterne monitorate · snapshot del 11/08/2026
10 fonti esterne monitorate Nessuna corrispondenza
Tecnologie
7 tecnologie identificate con alta affidabilità
Analisi di VirusTotal
Analisi delle prestazioni del sito
Google PageSpeed Insights — mobile performance audit of order27895.netlify.app · checked May 13, 2026
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo