This domain, phone-cloud.site, was registered on July 02, 2026 through EuroDNS S.A. and currently resolves to the IPv4 address 108.167.146.200. The authoritative name servers are cns43.webhostbox.net and cns44.webhostbox.net, indicating hosting on the WebhostBox platform. Independent phishing feed providers PhishDestroy and OpenPhish have listed the domain as malicious, and two additional security blocklists also contain it. VirusTotal analysis shows that 2 of 91 scanned security vendors flagged the domain, confirming the presence of at least one detection signature.
The domain is classified as a generic phishing operation, carries a high risk rating, and remains active as of the report date, August 01, 2026. Available intelligence does not reveal SSL certificate details, HTTP response codes, or page content, so the exact phishing lure and target brand remain unknown. Likewise, no attribution to specific malware kits or threat actors has been disclosed. The limited detection count suggests that the malicious infrastructure may be newly deployed or that scanning coverage is incomplete.
Defenders should add 108.167.146.200 to network deny lists, enforce DNS filtering for phone-cloud.site, and ensure that email gateways block inbound messages referencing this domain. Continuous monitoring of the associated name servers and periodic re‑scans on VirusTotal are recommended to capture any escalation in detection counts. Organizations using threat‑intelligence platforms should also incorporate the domain into their indicator feeds to prevent credential harvesting attempts linked to this active phishing infrastructure.