atendimento24horas[.]click
“Consulta de Regularização - Receita Federal”
atendimento24horas.click — Непроверенный. Олицетворение бренда: Govbr; Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLScan malicious verdict; PhishDestroy score 71/100. Регистратор: Dynadot.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy confirms that atendimento24horas.click is a credential theft scam site actively luring victims under the guise of 24/7 customer support. The domain mimics legitimate service portals to harvest login credentials, banking details, or payment card data. Threat actors leverage urgency and social engineering to trick users into entering sensitive information, which is then exfiltrated to attacker-controlled servers. Mitigation is critical to prevent account takeovers and financial loss.
This domain was flagged during real-time monitoring with an active status and under investigation risk level. Intelligence indicates 0 detections out of 95 on VirusTotal as of the latest scan, suggesting low signature detection despite malicious hosting behavior. The SSL certificate is issued by Let's Encrypt with a valid chain, resolving to IP 34.111.179.208. No historical blocklist entries were found in PhishDestroy’s threat intelligence feeds, and the domain’s creation date and registrar remain unverified at this stage. Trust scores from passive DNS and SSL observatories show no prior reputation, indicating a newly registered or hastily deployed threat infrastructure.
If you encounter this domain or have interacted with it, immediately cease any data entry and change passwords for affected accounts using a clean, isolated device. Report the site to your IT security team and file a complaint with relevant cybercrime units such as the FBI IC3 or local authorities. Organizations should block 34.111.179.208 at the firewall and monitor for outbound connections to known credential exfiltration endpoints. Users are advised to verify support portals directly via official channels and enable multi-factor authentication on all accounts. Report suspicious domains through PhishDestroy’s public portal or trusted threat-sharing platforms.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технологии · 6 identified
Utility-first CSS framework for rapid custom UI development.
Suite of cloud computing services running on Google infrastructure.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Content delivery network built on Google global edge infrastructure.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
Анализ VirusTotal
Анализ производительности сайта
Google PageSpeed Insights — mobile performance audit of atendimento24horas.click · checked Apr 15, 2026
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание