restrycreatdnnns[.]frbg[.]biz[.]id
restrycreatdnnns.frbg.biz.id — Não verificado. Representação da marca: Genericcloudflare; Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 13/91 (ADMINUSLabs, Criminal IP, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; PhishDestroy score 89/100.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, restrycreatdnnns.frbg.biz.id, was identified as a credential theft phishing site designed to harvest login credentials, financial details, or other sensitive information from unsuspecting users. Such infrastructure typically mimics legitimate services, tricking users into entering credentials that are then captured by threat actors for fraud, account takeover, or further exploitation. The site may have presented itself as a trusted entity, such as a banking portal, email service, or corporate login page, to increase the likelihood of successful compromise. Analysis indicates the domain was created on February 21, 2026, and is hosted on infrastructure associated with Cloudflare, Inc. (AS13335) at IP address 188.114.97.3. Security vendors flagged the domain in 17 out of 95 scans on VirusTotal, and it appears on at least one security blocklist. The SSL certificate, issued under the identifier WE1, does not align with typical certificates used by legitimate services, further suggesting malicious intent. The domain has since been taken offline, but its infrastructure and registration details remain relevant for threat correlation. If you visited restrycreatdnnns.frbg.biz.id or entered any information on the site, immediate action is required. First, change passwords for any accounts that may have been exposed, prioritizing financial, email, and work-related credentials. Enable multi-factor authentication (MFA) where available to add an additional layer of security. Monitor accounts for unauthorized activity, such as unfamiliar transactions or login attempts, and report any suspicious behavior to the relevant service provider. If financial information was entered, contact your bank or card issuer to freeze accounts and prevent fraudulent transactions. Additionally, scan your device for malware using updated security tools to ensure no secondary infections were introduced.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo