mellifluous-squirrel-599713[.]netlify[.]app
mellifluous-squirrel-599713.netlify.app — Неперевірений. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); 1 external blocklist match (ScamSniffer); PhishDestroy score 76/100. Реєстратор: Netlify.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, mellifluous-squirrel-599713.netlify.app, is confirmed to operate as a credential harvesting phishing site targeting users through deceptive login interfaces. Analysis indicates the site mimics legitimate authentication portals to capture sensitive information such as usernames, passwords, and potentially multi-factor authentication codes. The infrastructure is designed to exploit trust in cloud-based hosting platforms, increasing the likelihood of successful social engineering attacks against unsuspecting victims. Infrastructure analysis reveals the domain is hosted on a platform registered through Netlify and resolves to the IP address 18.208.88.157, located within the Amazon.com, Inc. autonomous system (AS14618) in the United States. The domain currently holds a valid SSL certificate issued by DigiCert Inc (DigiCert Global G2 TLS RSA SHA256 2020 CA1), which may lend a false sense of legitimacy to targets. Detection metrics show the domain is flagged by 2 security blocklists and has been identified as malicious by 2 out of 95 security vendors on VirusTotal, indicating a high-risk classification despite limited initial detection coverage. Users who have visited mellifluous-squirrel-599713.netlify.app or entered credentials on the site should immediately revoke any submitted information by changing passwords for all potentially compromised accounts. Enable multi-factor authentication where available, particularly for financial, email, and identity management services. Monitor accounts for unauthorized activity and report any suspicious transactions or login attempts. Organizations should add the domain and its resolving IP (18.208.88.157) to network blocklists and conduct internal reviews for signs of credential reuse or lateral movement. No legitimate services are associated with this domain, and all interactions should be treated as malicious.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 2 identified
Platform for deploying and hosting modern web applications.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Аналіз VirusTotal
Архівні докази
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of mellifluous-squirrel-599713.netlify.app · checked Mar 2, 2026
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога