phila[.]revenue-kd[.]cc
“Florida Dept. of Revenue Florida Dept. of Revenue”
phila.revenue-kd.cc — 콘텐츠를 사용할 수 없음. 브랜드 사칭: Govphil. 증거 요약: VirusTotal 16/91 (ADMINUSLabs, BitDefender, Chong Lua Dao, CRDF, CyRadar); URLScan malicious verdict; PhishDestroy score 95/100. 등록기관: Dominet (HK).
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Analysis of phila.revenue-kd.cc indicates an active generic phishing infrastructure targeting revenue-related services. The domain was registered on September 16 2025 through Dominet (HK) Limited, a registrar based in Hong Kong. DNS resolution points exclusively to the IPv4 address 43.130.77.166, which is the sole host observed for this indicator. Reputation services have taken notice: PhishDestroy has added the domain to its blocklist, and it appears on an additional security blocklist, bringing the total count of blocklist listings to one. VirusTotal scans have returned 16 positive detections out of 91 submitted security vendors, confirming that a significant portion of the scanning ecosystem classifies the domain as malicious.
The risk level is assigned as elevated, and the campaign remains active as of the report date, July 29 2026. While the available intelligence confirms malicious intent, several operational details remain unknown. No publicly released page title, SSL certificate information, or HTTP response codes have been disclosed, limiting insight into the specific phishing lure or credential‑harvesting mechanisms employed. The hosting environment beyond the single IP address has not been correlated with known threat actor infrastructure, and no attribution to a broader campaign or toolkit has been identified. Defenders should prioritize immediate containment actions.
The domain should be added to local deny lists and enforced through perimeter firewalls or secure web gateways. Security solutions that integrate VirusTotal or similar multi‑vendor reputation feeds must be configured to block any request that matches the 16 positive detections. Network monitoring should include traffic to 43.130.77.166 and any associated sub‑domains, and incident response teams should advise users to avoid interactions with any communications purporting to originate from this domain.
네트워크 보안 인텔리전스
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
VirusTotal 분석
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.