avantisfi[.]fi
“Home | Avantis”
avantisfi.fi — Неперевірений. Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, ESET); 3 external blocklist matches (MetaMask, ScamSniffer, SEAL); PhishDestroy score 95/100. Реєстратор: Immaterialism.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
avantisfi.fi is currently classified as a generic phishing site with a high risk rating. The domain was registered on 25 October 2025 through Immaterialism Ltd and remains active as of the 12 July 2026 assessment. The page title returned by the server is "Home | Avantis", which aligns with the generic phishing categorization but provides no further insight into the targeted brand or content. Infrastructure analysis shows the domain resolves to the IP address 188.114.97.3, hosted in the United States and advertised under ASN 13335, which belongs to a major content delivery network. The domain is served behind Cloudflare’s network, using nameservers bethany.ns.cloudflare.com and justin.ns.cloudflare.com. The TLS certificate is issued by Google Trust Services under the "WE1" designation, indicating a valid HTTPS service. Detected technologies include Google Analytics, Cloudflare Browser Insights, and HTTP/3, suggesting a modern web stack. Reputation signals are strongly negative. The domain appears on four security blocklists, including PhishDestroy, MetaMask, ScamSniffer, and SEAL. Gridinsoft assigns a trust score of 0 out of 100, and VirusTotal reports that 15 out of 95 scanned security vendors flag the domain as malicious. These indicators collectively confirm the presence of malicious activity associated with the domain. Defenders should block network traffic to 188.114.97.3 and to the domain name itself, institute DNS sinkholing where possible, and monitor for any credential harvesting attempts that reference the "Home | Avantis" title. Because the underlying page content has not been examined, further analysis of the site’s payload and any credential collection mechanisms is recommended. Continuous re‑evaluation of the domain’s status on blocklists and VirusTotal is advised to capture any changes in malicious behavior.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 4 identified
Google Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100% впевненостіCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 100% впевненостіАналіз VirusTotal
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога