camerica[.]co[.]com
“www.camerica.co.com”
camerica.co.com — Não verificado. Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Forcepoint ThreatSeeker); Spamhaus DBL_PHISH; 3 external blocklist matches (Polkadot, Enkrypt, Codeesura); PhishDestroy score 95/100. Registrador: Moniker Online Services.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, camerica.co.com, is actively engaged in credential harvesting phishing operations targeting users through deceptive login interfaces. Analysis indicates the site mimics legitimate authentication portals to capture sensitive credentials, including usernames, passwords, and potentially multi-factor authentication tokens. The infrastructure is designed to exploit trust in well-known brands or services, redirecting victims to fraudulent pages that closely resemble genuine platforms. Given its long-standing registration and current activity, this domain poses a significant risk to both individual and organizational security, particularly for those unaware of phishing tactics or lacking endpoint protection. Infrastructure analysis reveals the domain was registered on August 16, 1997, through Moniker Online Services LLC, a registrar historically associated with abusive registrations. It currently resolves to the IP address 188.114.97.3, hosted on autonomous system AS13335, a network frequently utilized for bulletproof hosting and content delivery. The domain is flagged by 17 out of 95 security engines on VirusTotal, indicating widespread detection as malicious. Additionally, it appears on four independent security blocklists, including those maintained by threat intelligence communities and browser-based protection systems. The absence of an SSL certificate further underscores the lack of basic security measures, increasing the likelihood of interception or tampering during credential transmission. Users who have visited camerica.co.com or interacted with its content are advised to take immediate remedial action. First, revoke any credentials entered on the site, particularly those reused across multiple platforms. Reset passwords for all associated accounts using a secure, password-managed solution to generate unique, complex credentials. Enable multi-factor authentication where available, preferably using app-based or hardware tokens rather than SMS-based methods. Monitor financial and communication accounts for unauthorized activity, and report any suspicious transactions to the relevant service providers. Organizations should block the domain and its resolving IP at the network perimeter and conduct internal investigations to determine if any credentials were compromised. Endpoint detection systems should be updated to include this domain in their threat intelligence feeds to prevent future exposure.
Sinais de segurança
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo