cupolatricol[.]duckdns[.]org
“Bancolombia - Tarjeta Virtual”
cupolatricol.duckdns.org — Контент недоступний. Уособлення бренду: Bancolombia. Зведення доказів: VirusTotal 22/91 (Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Реєстратор: DuckDNS.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain cupolatricol.duckdns.org has been identified as a credential phishing threat, currently marked as active. Analysis indicates this domain is designed to harvest login credentials through deceptive login portals, though no specific brand impersonation has been confirmed at this time. The domain remains operational and continues to pose a risk to users who may encounter it through phishing campaigns or malicious redirects. Infrastructure analysis reveals the domain resolves to the IP address 45.61.150.63 and was registered through DuckDNS, a dynamic DNS provider often exploited for malicious purposes. Security vendor detections on VirusTotal show 15 of 95 engines flagging the domain as malicious, while it appears on one additional security blocklist. The SSL certificate is issued by Let's Encrypt, a common choice for both legitimate and malicious domains due to its free and automated issuance process. No historical registration data is available for this subdomain, as DuckDNS does not provide public creation timestamps. Current status indicates the domain remains active and unmitigated, with no takedown efforts observed. Organizations and individuals are advised to block the domain at the DNS or proxy level, as well as the associated IP address 45.61.150.63. Endpoint protection solutions should be updated to include this domain in phishing detection rules, and users should be educated to recognize dynamic DNS subdomains in phishing attempts. Network logs should be reviewed for connections to this domain or IP to identify potential compromises. Given the high-risk classification, immediate action is recommended to prevent credential theft or further exploitation.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 3 identified
Ubuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.
www.ubuntu.com 100% впевненостіNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіАналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of cupolatricol.duckdns.org · checked Jul 11, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога