The domain connectsecurehomelaiding.weebly.com is currently active and has been identified as a credential‑phishing infrastructure. Defensive feeds indicate that PhishDestroy has already blocked the domain, and VirusTotal records show that eight of ninety‑one scanning engines have flagged it as malicious. The domain resolves to the IPv4 address 74.115.51.8 and is listed on a single security blocklist, reinforcing its hostile intent.
Registration details reveal that the domain was provisioned through Square, Inc., but the authoritative nameserver information is unavailable (NS_NOT_FOUND), which limits the ability to trace upstream DNS control. No public SSL/TLS certificate data, HTTP status codes, or page title information have been released, leaving the exact content and lure mechanisms unconfirmed. Consequently, analysts cannot verify whether the site presents a login portal, a credential‑harvesting form, or redirects to additional malicious payloads.
Defenders should treat the domain as high‑risk: immediately block the hostname and its resolving IP at perimeter firewalls, proxy filters, and endpoint URL reputation controls. Monitoring for DNS queries to the domain and for outbound connections to 74.115.51.8 is advisable, as is adding the address to internal threat‑intel feeds. Given the limited visibility into the site’s payload, continued observation of any new detections from additional scanning vendors or emerging blocklist entries is recommended to refine the response posture.