elevatebacc[.]com
“Homepage – elevatebacc”
Resumo das evidências
Analysis of elevatebacc.com shows a newly registered domain (creation date 21 Feb 2026) that is currently offline but previously resolved to the Cloudflare address 172.67.167.191 (AS13335, United States). The site presented the page title “Homepage – elevatebacc” and was classified as a tech‑support scam that impersonates Google. The SSL certificate identifier is listed as WE1, indicating a valid TLS endpoint at the time of observation. Detection signals include a single blocklist entry and a block by PhishDestroy, confirming that at least one security feed has taken action.
VirusTotal scanning recorded one positive detection out of 93 participating vendors, providing modest but concrete evidence of malicious intent. No additional public threat‑intel sources such as OTX or Google Safe Browsing were cited in the available data. Uncertainties remain around the actual page content, payload delivery mechanisms, and whether the domain has been used to host malicious binaries or to harvest credentials, as no forensic capture of the site’s HTML or network traffic is provided. The offline status suggests that the operators may be rotating infrastructure or awaiting a trigger to reactivate the site.
Defenders should immediately add elevatebacc.com to DNS‑based blocklists and configure email gateways to flag any communications that reference Google branding originating from this domain. Continuous monitoring of the IP 172.67.167.191 is advised, as Cloudflare often serves multiple unrelated customers, but any resurgence of activity from this address should be treated as suspicious given its prior association with a tech‑support impersonation campaign. Logging DNS queries for the domain and correlating them with authentication attempts to Google services will help identify potential compromise attempts.
Data Coverage
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo