MALICIOUS — CRITICAL
Проверка домена cuentacorriente.com.co на фишинг и безопасность
cuentacorriente[.]
Analysis of cuentacorriente.com.co indicates that the domain was registered on May 14, 2011 through NameCheap, Inc.
- VirusTotal
- 15/91
- Blocklists
- No stored match
- Доступность
- Контент недоступен · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
cuentacorriente.com.co — Контент недоступен (HTTP 502). Олицетворение бренда: Trust Wallet; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 15/91 (alphaMountain.ai, BitDefender, CRDF, Emsisoft, Forcepoint ThreatSeeker); URLQuery 3 alerts; URLScan malicious verdict; Spamhaus DBL_SPAM; CF Radar malicious; PhishDestroy score 95/100. Регистратор: NameCheap.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
Analysis of cuentacorriente.com.co indicates that the domain was registered on May 14, 2011 through NameCheap, Inc. and continues to resolve to the IPv4 address 158.94.209.40. The authoritative name servers are dns1.namecheaphosting.com and dns2.namecheaphosting.com. The domain is currently listed as active and has been classified with a high risk rating. Detection data show that four of ninety‑five security vendors on VirusTotal have flagged the domain, and the domain appears on one external blocklist.
PhishDestroy has already added the domain to its blocklist, confirming its use in phishing campaigns. No additional public indicators such as SSL certificate details, HTTP status codes, page title, or Safe Browsing verdicts were provided in the intelligence feed. Consequently, the precise phishing payload, targeted brand, or lure technique remain unknown. Defenders should ensure that outbound traffic to 158.94.209.40 is monitored and, where possible, blocked.
Existing DNS filtering solutions should be updated to include the domain and its associated name servers. Endpoint protection platforms should be configured to treat any detection from the four VirusTotal‑flagged vendors as malicious. Continuous threat‑intel monitoring is advised to capture any future changes, such as additional blocklist listings or new vendor detections, which could clarify the phishing campaign’s scope.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Охват данных12 recorded checks
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | cuentacorriente.com.co |
phishing | Phishing Block |
| Cloudflare DNS | cuentacorriente.com.co |
malicious | Sinkholed |
| DNS4EU | cuentacorriente.com.co |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчетыIndependent lookups and source reports
PD-20260721-E2C1B9 Recipient: abuse@namecheap.com Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.