4a537f8276704fe3b6b61761570858560[.]2141976[.]meusitehostgator[.]com[.]br
“Access denied | 4a537f8276704fe3b6b61761570858560.2141976.meusitehostgator.com.br used Cloudflare t…”
4a537f8276704fe3b6b61761570858560.2141976.meusitehostgator.com.br — Прикритий · доступний (HTTP 302). Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 15/91 (ADMINUSLabs, Criminal IP, Bfore.Ai PreCrime, Chong Lua Dao, CyRadar); Spamhaus DBL_PHISH; CF Radar malicious; cloaking observed; PhishDestroy score 100/100. Реєстратор: NEWFOLD.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain represents a credential theft operation targeting users through deceptive login portals. Analysis indicates the subdomain 4a537f8276704fe3b6b61761570858560.2141976.meusitehostgator.com.br was designed to harvest account credentials by mimicking legitimate authentication interfaces, a common tactic in credential theft campaigns. The infrastructure was hosted on Cloudflare IP 104.18.42.56, which provided SSL encryption via Let's Encrypt certificate E7, lending a false sense of legitimacy to the fraudulent pages.
Technical evidence confirms the elevated risk level of this threat. The domain was registered on March 14, 2025, through NEWFOLD, and has since been flagged by 19 out of 95 security vendors on VirusTotal. It appears on two security blocklists and is actively blocked by at least two threat intelligence platforms. The page title 'Access denied' suggests the operators may have implemented Cloudflare restrictions to evade detection or analysis, though the domain has since been taken offline.
Users who visited this domain should immediately take protective measures. Any credentials entered on this site must be considered compromised and should be changed across all platforms where the same credentials were used. Enable multi-factor authentication on critical accounts to mitigate unauthorized access. Monitor financial and sensitive accounts for suspicious activity, as credential theft often precedes account takeovers or fraudulent transactions. If browser sessions were active during the visit, clear all cached data and run a full system scan using updated security tools to detect potential malware or tracking scripts.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 1 identified
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comАналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of 4a537f8276704fe3b6b61761570858560.2141976.meusitehostgator.com.br · checked Mar 1, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога