story[.]stakingsreward[.]org
“Google”
story.stakingsreward.org — Conteúdo indisponível (HTTP 502). Representação da marca: Google; Tipo de golpe: Credential Phishing. Resumo das evidências: VirusTotal 13/93 (ADMINUSLabs, ChainPatrol, BitDefender, CRDF, CyRadar); PhishDestroy score 89/100.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, story.stakingsreward.org, poses as a legitimate Gmail login portal to deceive users into entering their credentials. The site is designed to closely resemble Google’s interface, tricking visitors into submitting sensitive account information, which attackers can then exploit for unauthorized access or further malicious activities. Such brand impersonation tactics are commonly used in credential harvesting campaigns, particularly targeting users who may not scrutinize the URL or page authenticity. Analysis indicates the domain was registered on February 21, 2026, an unusually future date that may suggest fraudulent activity or a misconfiguration. It is flagged by 13 out of 95 security vendors on VirusTotal, confirming its malicious classification. The domain resolves to the IP address 142.250.4.99, which is associated with Google LLC infrastructure, though this does not imply legitimacy. The SSL certificate is marked as WR2, a low-trust indicator often seen in phishing sites. Additionally, the domain appears on one security blocklist and was taken offline following detection. If you visited story.stakingsreward.org and entered any credentials, immediately change your Gmail password and enable multi-factor authentication. Review your account for unauthorized activity, such as unfamiliar logins or sent emails. Clear your browser cache and cookies to remove any residual tracking elements. Monitor linked accounts for suspicious behavior, as compromised credentials may be used to access other services. Report the incident to your organization’s security team if the account is work-related, and consider notifying relevant authorities if financial or personal data was exposed.
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Captura armazenada
Inteligência de Domínios
Detalhes técnicosDNS, SANs do SSL, carimbos de data e hora
Inteligência forense
Análise do VirusTotal
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo