formsly-form[.]web[.]app
Verificação de phishing e segurança de formsly-form.web.app
“Formsly”
formsly-form.web.app — Último ativo conhecido (HTTP 200). Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 14/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); CF Radar malicious; PhishDestroy score 100/100. Registrador: Google Domains.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
Evidence Analysis
PhishDestroy identifies formsly-form.web.app as an active credential theft phishing domain, currently flagged by 15 of 95 VirusTotal security vendors. The site impersonates a legitimate form service under the name "Formsly" to trick users into submitting sensitive information. This threat is classified as high risk and remains operational, posing an immediate danger to unsuspecting visitors.
The domain is registered through Google LLC and resolves to IP address 199.36.158.100, with an SSL certificate issued by Google Trust Services (WR4). It appears on two security blocklists, and its page title is simply "Formsly." Despite these red flags, the site continues to function, indicating active malicious intent. The combination of a low blocklist count and high vendor detection suggests the domain is relatively new but widely recognized as harmful.
Given its high risk level and active status, users should avoid interacting with formsly-form.web.app entirely. Do not click any links, enter credentials, or download files from this domain. If you have already submitted information, change passwords immediately and enable two-factor authentication on affected accounts. PhishDestroy recommends reporting the domain to Google Safe Browsing and your email provider to prevent further compromise.
Cobertura dos dados12 recorded checks
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 3 identified
Google platform for building mobile and web applications with backend services.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Análise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of formsly-form.web.app · checked Mar 2, 2026
Evidências e relatórios externosIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.