coldredir[.]com
Verificação de phishing e segurança de coldredir.com
“Inscription sur Coldbet ᐉ Créer un compte sur Coldbet ᐉ cold.bet”
coldredir.com — Último ativo conhecido (HTTP 301). Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); URLQuery 1 alert; PhishDestroy score 69/100. Registrador: GoDaddy.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
PhishDestroy identifies coldredir.com as a credential theft portal that was taken offline shortly after being flagged by security researchers. This domain was designed to mimic legitimate login interfaces, tricking users into entering sensitive credentials that were then harvested by attackers. The site relied on social engineering tactics to appear authentic, often impersonating well-known services or platforms to increase the likelihood of user interaction. Once a victim entered their login details, the stolen information was likely sent to a remote server controlled by the threat actor for further exploitation, such as identity theft or unauthorized account access.
This domain was flagged based on multiple indicators of malicious activity, including its low VirusTotal detection rate of 1/95 at the time of analysis. The domain was registered on May 20, 2025, through GoDaddy.com, LLC, and resolved to the IP address 91.186.204.247. The presence of a Let's Encrypt SSL certificate suggests an attempt to appear legitimate, as HTTPS is often associated with trustworthy websites. The domain's recent creation date and the absence of detections highlight the evolving nature of phishing campaigns, which frequently exploit newly registered domains to evade early detection by security systems.
If you visited coldredir.com, immediately check the accounts you may have accessed through the site for any unauthorized activity. Change the passwords for those accounts and enable two-factor authentication where available. Monitor your email and financial accounts for signs of compromise, such as unusual transactions or login attempts. If you entered any sensitive information, consider reporting the incident to the relevant service provider and file a report with your local cybercrime unit. Avoid clicking on any links or downloading attachments from suspicious emails or websites in the future, and ensure your device's security software is up to date to protect against further threats.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | coldredir.com |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo