veliboss[.]cc
“403 Forbidden”
veliboss.cc — Erro no servidor (HTTP 502). Representação da marca: Genericcrypto. Resumo das evidências: VirusTotal 21/95 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 100/100. Registrador: NiceNIC.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, veliboss.cc, is identified as a credential harvesting phishing site designed to steal user login credentials, financial details, or other sensitive information. Phishing sites of this nature typically mimic legitimate services, tricking users into entering personal data that is then captured by threat actors. The elevated risk level indicates a high probability of active exploitation, with infrastructure configured to evade detection and maximize victim engagement. Analysis indicates veliboss.cc was registered on September 24, 2025, through NiceNIC International Group Co., Limited, a registrar frequently associated with high-risk domains. The domain resolves to IP address 194.87.99.89, hosted on a Russian autonomous system (AS48347 JSC Mediasoft ekspert), a network segment commonly linked to phishing campaigns. At the time of assessment, 21 out of 95 security vendors on VirusTotal flagged this domain as malicious, and it appears on two security blocklists, including PhishDestroy and PhishingDB. The absence of an SSL certificate further reduces legitimacy, as modern phishing sites typically employ encryption to appear credible. Users who visited veliboss.cc should immediately take corrective action to mitigate potential compromise. First, reset any credentials entered on the site, prioritizing accounts with financial or administrative access. Monitor linked accounts for unauthorized activity, such as logins from unfamiliar locations or devices. If financial data was submitted, contact relevant institutions to flag potential fraud. Additionally, scan the device used to access the site for malware, as phishing pages may deploy secondary payloads. To prevent future exposure, verify domain authenticity before entering sensitive information and rely on security tools that block known malicious infrastructure.
Sinais de segurança
Inteligência de segurança de rede Registrar context
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Latest Classified Outcome 2026-08-14 03:36:40 UTC
Tecnologias · 1 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
Análise do VirusTotal
Evidências arquivadas
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo