proposals-kledai[.]com
“FASTPANEL”
proposals-kledai.com — Não verificado. Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Registrador: PDR.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
The domain proposals-kledai.com was registered on May 11 2026 through a public registrar. DNS resolution points to IP 104.21.47.234, which belongs to a large content‑delivery network hosting provider. HTTP requests return status 200 and the site presents a TLS certificate issued by a publicly trusted certificate authority, indicating normal web service availability.
Threat intelligence sources have associated the domain with generic phishing activity. An AlienVault OTX pulse references the domain, and it appears on three independent security blocklists. Four of ninety‑five scanning engines on a multi‑engine analysis platform flagged the domain as malicious. A security rating system assigned a trust score of 0 out of 100. The page title returned by the web server is “FASTPANEL”, a common default panel title that is often abused to host credential‑harvesting pages.
Current analysis cannot confirm the exact payload or target brand, as no public phishing page samples have been released. The lack of disclosed content leaves the specific lure unknown, but the combination of blocklist listings, low trust score, and multiple scanner detections indicates a high likelihood that the site is being used to collect credentials. The domain remains active as of the report date.
Defenders should treat proposals-kledai.com as a high‑risk indicator. Immediate actions include adding the domain to network deny lists, configuring DNS sinkhole or firewall rules to block outbound connections, and monitoring for related URL patterns in email gateways. Incident response teams should also alert end users about potential credential‑phishing attempts originating from this domain and consider evidence‑based hunting for any compromised accounts.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo