gilded-froyo-55cb12[.]netlify[.]app
“Webmail :: Welcome to Webmail”
gilded-froyo-55cb12.netlify.app — Останній відомий активний (HTTP 200). Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 16/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); PhishDestroy score 100/100. Реєстратор: Netlify.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, gilded-froyo-55cb12.netlify.app, is identified as an active credential phishing site targeting webmail users. The page impersonates generic email login portals, as evidenced by its title, 'Webmail :: Welcome to Webmail,' designed to harvest authentication credentials. Analysis indicates the threat type is classified as generic_phishing with a high-risk assessment due to its operational status and detection metrics. Infrastructure analysis reveals the domain is hosted on Netlify and resolves to the IP address 63.176.8.218, geolocated in Germany under AS16509 (Amazon.com, Inc.). The domain was registered on March 05, 2026, though this date may reflect platform-specific record-keeping rather than traditional WHOIS registration. Security vendor detections include 19 of 95 engines on VirusTotal flagging the domain, while it appears on one additional security blocklist. The SSL certificate is issued by DigiCert Inc, specifically under the 'DigiCert Global G2 TLS RSA SHA256 2020 CA1' intermediate authority, which does not inherently indicate malicious intent but is consistent with phishing infrastructure leveraging legitimate certificate providers. As of the latest verification, the phishing page remains active and accessible. Organizations and users are advised to block the domain and its resolving IP (63.176.8.218) at the network perimeter. Endpoint protection systems should be updated to include this indicator of compromise, and security teams are recommended to monitor for credential submission attempts originating from internal networks. User awareness training should emphasize the risks of entering credentials on unverified login portals, particularly those hosted on content delivery platforms.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Криміналістичні дані
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of gilded-froyo-55cb12.netlify.app · checked Mar 26, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога