guileless-blancmange-a1f83d[.]netlify[.]app
“Netflix India – Watch TV Shows Online, Watch Movies Online”
guileless-blancmange-a1f83d.netlify.app — Conteúdo indisponível. Representação da marca: Netflix; Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 20/94 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 1 alert; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. Registrador: Netlify.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
guileless-blancmange-a1f83d.netlify.app is a credential theft phishing domain designed to harvest user login credentials under false pretenses. This site masquerades as a legitimate service while deploying deceptive forms to trick visitors into surrendering sensitive authentication data. The attackers leverage social engineering tactics to exploit user trust, often mimicking trusted brands or services to increase the likelihood of data submission. Once credentials are captured, threat actors can gain unauthorized access to accounts, enabling further exploitation such as financial theft, identity fraud, or lateral movement within compromised systems. The domain’s infrastructure and operational patterns align with known credential harvesting campaigns, posing a severe risk to individuals and organizations alike. This domain was flagged by multiple security vendors, with 11 out of 95 scanners on VirusTotal identifying it as malicious. It resolves to IP address 35.157.26.135 and is hosted on Netlify’s infrastructure, which has been abused by threat actors to deploy phishing pages due to its legitimate cloud hosting services. The domain carries a DigiCert SSL certificate, which may lend it an air of legitimacy to unsuspecting users. Additionally, Google Safe Browsing has classified this domain under the SOCIAL_ENGINEERING category, confirming its malicious intent. The combination of these technical indicators—low VirusTotal detection ratio, legitimate hosting provider, SSL encryption, and blocklist inclusion—paints a clear picture of a high-risk credential theft operation actively targeting users. If you have visited guileless-blancmange-a1f83d.netlify.app and entered any credentials or personal information, immediately change the passwords for those accounts and enable multi-factor authentication where available. Scan your device for malware using reputable antivirus software, as stolen credentials could be used to deploy additional malicious payloads. Report the domain to your organization’s security team or to platforms like Google Safe Browsing to aid in its takedown. Avoid interacting with this domain further and warn others who may have encountered it. For future protection, always verify URLs, use password managers to detect fake login pages, and rely on trusted security tools to block known malicious domains.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | guileless-blancmange-a1f83d.netlify.app |
phishing | Phishing Block |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 2 identified
Platform for deploying and hosting modern web applications.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Análise do VirusTotal
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of guileless-blancmange-a1f83d.netlify.app · checked Mar 26, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo