Analysis of cliente-web-caixa-online.com shows a newly registered domain (creation date July 27 2026) owned by Fewmoretaps OU d/b/a Trustname.com. The domain resolves to IP 188.114.97.3 and is served through Cloudflare nameservers (arch.ns.cloudflare.com, hazel.ns.cloudflare.com). Threat intelligence flags the site as a generic phishing vector and places it on a single security blocklist; PhishDestroy has already added the domain to its block list.
VirusTotal scanned the URL with 91 antivirus and URL‑reputation engines and reported no detections, a result that does not imply safety given the lack of malicious payload at the time of scan. No additional public intelligence such as OTX, Safe Browsing alerts, or SSL/TLS certificate details are presently available. The limited data suggest the infrastructure is typical of fast‑flux or low‑cost phishing campaigns that rely on reputable CDN services to obscure origin.
Defenders should treat the domain as malicious: block the domain at perimeter firewalls, DNS filtering, and email gateways; monitor outbound connections to the associated IP address; and add the domain to internal IOC lists. Continuous re‑evaluation is advised, as future scans may reveal active payloads or additional detections.