phila[.]revenue-ae[.]cc
phila.revenue-ae.cc — Непроверенный. Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 10/91 (BitDefender, CRDF, Forcepoint ThreatSeeker, Fortinet, G-Data); PhishDestroy score 80/100. Регистратор: Dominet (HK).
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
PhishDestroy identifies phila.revenue-ae.cc as a credential theft phishing domain designed to harvest user login details through deceptive tactics. This domain was actively impersonating a revenue or municipal service portal, likely targeting individuals seeking tax-related or government services. As of the latest assessment, the site has been taken offline, but its prior activity remains a concern for digital safety. The domain was flagged by 5 of 95 security vendors on VirusTotal, indicating a moderate but notable level of detection. It resolved to the IP address 170.106.51.191, which has been associated with other suspicious domains in the past. While registrar details and creation date are not publicly disclosed in this instance, the domain’s presence on multiple blocklists and its low trust scores across security platforms reinforce its malicious classification. The combination of these indicators—particularly the VirusTotal detection rate—highlights the need for caution. Currently, phila.revenue-ae.cc is offline, reducing immediate risk to users. However, individuals who may have interacted with the site should take proactive steps to secure their accounts. This includes changing passwords for any services accessed during the suspected exposure period, enabling multi-factor authentication, and monitoring financial or government portals for unauthorized activity. Users are advised to verify the legitimacy of any revenue-related websites by checking official government URLs and looking for HTTPS encryption. If credentials were entered on this domain, consider reporting the incident to relevant authorities or identity protection services.
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
Анализ VirusTotal
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание