controlloc.digital
“ControlLoc - Sistema de Gestão de Aluguéis para Imobiliárias”
ControlLoc.digital is flagged for credential theft. 4/95 VirusTotal vendors detected, elevating risk status. Currently offline.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Зведення доказів
The domain controlloc.digital has been identified as a credential theft threat and is currently offline. It impersonates a legitimate management system with the title 'ControlLoc - Sistema de Gestão de Aluguéis para Imobiliárias', aiming to deceive users into submitting sensitive information. This domain poses an elevated risk due to its potential for significant data theft and unauthorized access to users' credentials.
Analysis of the domain reveals that it was flagged by 4 out of 95 security vendors on VirusTotal, indicating a level of recognition among established threat detection platforms. The domain was registered through NiceNIC International Group Co., Limited, with an SSL certificate issued by Google Trust Services, which may lend a false sense of security to unsuspecting users. The domain resolves to IP address 172.67.166.243 and was created on February 22, 2026, suggesting it is a relatively new infrastructure. Additionally, it appears on one security blocklist and has a Gridinsoft trust score of 0/100, further emphasizing its malicious nature. The domain utilizes technologies such as Google Sign-in, HSTS, Google Analytics, Facebook Pixel, Cloudflare Browser Insights, Cloudflare, and HTTP/3, which may be part of its deceptive tactics.
Given the current offline status of controlloc.digital, its immediate threat level is reduced; however, the potential for reactivation or replication on different platforms remains. Entities should ensure robust network defenses, including updated blocklists and security vendor subscriptions, to mitigate risks from similar threats. Users are advised to exercise caution with emails or links purporting to be from ControlLoc, verifying the authenticity of the source before entering any credentials. Continuous monitoring of threat intelligence feeds and collaboration with cybersecurity professionals is recommended to preemptively address any resurgence of this or related threats.
Розвіддані з мережевої безпеки Registrar context
Forensic History & Detection Timeline
-
VirusTotal Detections Update Jun 26, 2026 · 18:57 UTCVirusTotal scanner detections updated from 3 to 4. Added scanner alerts: CRDF, alphaMountain.ai. Resolved alerts: SOCRadar.
-
VirusTotal Detections Update Mar 2, 2026 · 17:47 UTCVirusTotal scanner detections updated from 3 to 4. Added scanner alerts: CRDF.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Evasion analysis
Cloaking suspected: scanner and victim titles differ
Stored crawler-versus-browser observations for this host, plus a live fingerprint check for Keitaro-style traffic distribution systems.
- Stored cloaking flag
- Not observed
- Оцінка маскування
- 0/6
- Last cloaking scan
- Server header seen by scanner
cloudflare
Scanner note: alive_content: raw=ok; http=200; via=https_proxy; server=cloudflare
Збережений знімок · 2 sources
Аналітика доменів
Технічні подробиціDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-09-21 02:34:42 UTC
Технології · 7 identified
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of controlloc.digital · checked Mar 2, 2026
Повідомлення спільноти
Повідомив 1 учасник спільноти; уперше помічено 22.02.2026
- Збережені повідомлення
- 1
- Унікальні URL
- 1
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога