1-acess2025[.]dynv6[.]net
“Banco Bradesco | Desafie o Futuro”
1-acess2025.dynv6.net — Контент недоступен. Олицетворение бренда: Google; Тип мошенничества: Brand Impersonation. Сводка доказательств: VirusTotal 13/95 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 100 det.; PhishDestroy score 100/100. Регистратор: AT-88-Z (ASN: 16509).
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
This domain, 1-acess2025.dynv6.net, is flagged for brand impersonation targeting Google, though the observed page title ('Banco Bradesco | Desafie o Futuro') suggests additional targeting of Bradesco, a Brazilian financial institution. Analysis indicates the domain is currently offline, but prior infrastructure reveals it resolved to IP 18.223.30.153 (US, AS16509 Amazon.com, Inc.). The domain was registered through AT-88-Z (ASN: 16509) and uses nameservers ns1.dynv6.com, ns2.dynv6.com, and ns3.dynv6.com, a dynamic DNS provider often exploited for phishing due to low-cost or free registration. Security vendor detections include 13 flags from VirusTotal’s 95 scanned engines, alongside listings on one security blocklist (PhishDestroy).
Gridinsoft and Scamadviser both assign a trust score of 1/100, reinforcing its malicious classification. No SSL certificate was present, a common red flag in phishing domains. The discrepancy between the declared 'Brand target' (Google) and the page title (Bradesco) may indicate a multi-brand phishing kit or a misconfiguration in the attacker’s infrastructure. Defenders should treat this domain as high-risk for credential theft or financial fraud, particularly targeting Portuguese-speaking users.
Block the domain and its resolving IP (18.223.30.153) at perimeter controls, and monitor for related subdomains under dynv6.net. While the domain is offline, historical DNS records and hosting details (AS16509) may aid in identifying linked campaigns. No evidence of a phishing kit or payload is available, but the page title suggests a focus on banking fraud. Further investigation into the hosting provider’s abuse contacts may reveal additional linked infrastructure.
Сигналы безопасности
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание