marvelous-sfogliatella-f320f8[.]netlify[.]app
“Webmail Sign-in”
marvelous-sfogliatella-f320f8.netlify.app — Неперевірений. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 19/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. Реєстратор: Name.com.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, marvelous-sfogliatella-f320f8.netlify.app, is currently flagged as a high-risk webmail phishing site. Analysis indicates it impersonates legitimate email login portals, likely targeting corporate or personal credentials under the guise of a Webmail Sign-in interface. The domain remains active as of the latest verification, posing an ongoing threat to users who may be deceived into entering sensitive authentication details. Infrastructure analysis reveals the domain was registered on February 21, 2026, through Name.com, Inc., and is hosted on Netlify’s platform. It resolves to the IP address 35.157.26.135, located in Germany under Amazon.com, Inc.’s AS16509. The SSL certificate is issued by DigiCert Inc, specifically the DigiCert Global G2 TLS RSA SHA256 2020 CA1 intermediate. Detection metrics show 21 of 95 security vendors on VirusTotal flagging the domain as malicious, while Google Safe Browsing explicitly categorizes it as phishing. The domain appears on two security blocklists, including PhishDestroy and PhishingDB, further corroborating its malicious intent. Current assessment confirms the domain remains operational, continuing to host the fraudulent Webmail Sign-in page. Organizations and individuals are advised to block access to this domain at the network level, including the associated IP address 35.157.26.135. Endpoint protection systems should be updated to recognize the domain and its SSL certificate thumbprint as indicators of compromise. Users who may have interacted with the site should be instructed to reset credentials immediately, particularly if login details were entered. Monitoring for related phishing campaigns leveraging similar Netlify-hosted subdomains is recommended, given the platform’s frequent exploitation for credential harvesting operations.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Криміналістичні дані
Технології · 4 identified
Popular CSS framework for responsive, mobile-first web development.
Platform for deploying and hosting modern web applications.
Free public CDN for open-source projects, serving files from npm and GitHub.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of marvelous-sfogliatella-f320f8.netlify.app · checked Mar 1, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога