usaacyberdetection[.]com
Resumo das evidências
The domain usaacyberdetection.com has been identified as a credential theft phishing site, currently taken down after being flagged by security researchers. This domain impersonates Cloudflare's legitimate security challenge page, displaying the title 'Just a moment...' to trick users into believing they are solving a real CAPTCHA or browser check. In reality, the site is designed to steal login credentials or other sensitive information from unsuspecting visitors.
PhishDestroy's analysis reveals that usaacyberdetection.com was flagged by 2 out of 95 VirusTotal security vendors, and it appears on one security blocklist. The domain was created on April 21, 2026, and registered through NICENIC INTERNATIONAL GROUP CO., LIMITED, a registrar known for hosting malicious domains. It resolves to IP address 188.114.97.3, which is associated with Cloudflare's infrastructure, further aiding the impersonation. The SSL certificate is issued by Let's Encrypt (E7), providing a false sense of security. Additionally, AlienVault OTX indicates the domain appears in one threat intelligence pulse, confirming its malicious nature.
Given that the domain has been taken down, users who may have encountered it should change any passwords entered on the site and monitor their accounts for suspicious activity. It is crucial to verify URLs carefully before entering credentials, even if the page appears legitimate. PhishDestroy recommends enabling multi-factor authentication and using a reputable password manager to reduce the risk of credential theft. Stay vigilant against similar phishing attempts that mimic trusted security checks.
Data Coverage
Inteligência de segurança de rede
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 12/08/2026
10 fontes externas monitoradas Sem correspondência
Linha do tempo de detecção
-
Cloudflare Radar
Varredura do Cloudflare Radar armazenada · Abrir varredura
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
ICANN OVERSIGHT
Credenciamento e contexto RAA
Credenciamento e contexto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Tecnologias
3 tecnologias identificadas com alta confiança
Análise do VirusTotal
Análise da configuração do site
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo