beneficiosocablue[.]netlify[.]app
“OCA Mi Cuenta”
beneficiosocablue.netlify.app — 内容不可用. 诈骗类型:Fake Airdrop. 证据摘要: VirusTotal 18/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, CyRadar); URLQuery 3 alerts; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. 注册商: Netlify.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
PhishDestroy identifies beneficiosocablue.netlify.app as an active fake giveaway scam deployed to harvest credentials and payment details under the guise of ‘sponsored benefits.’ The domain masquerades as a legitimate promotional portal, luring users with false promises of cash rewards or exclusive offers. Upon interaction, victims are prompted to input personal information or payment data, which is then exfiltrated to attacker-controlled servers. Security telemetry confirms this site engages in social engineering to deceive visitors into believing they have qualified for a nonexistent benefit program. The domain was flagged by OpenPhish and Google Safe Browsing under the SOCIAL_ENGINEERING category, indicating confirmed malicious intent aimed at fraudulent data collection.
Technical indicators confirm high-risk behavior: the domain resolves to IP address 63.176.8.218 and is hosted on Netlify infrastructure, a common choice for fast-deployed phishing campaigns. The SSL certificate issued by DigiCert Inc provides a false sense of legitimacy, masking malicious intent behind a green padlock icon. VirusTotal analysis shows 17 out of 95 security engines detect this domain, with 1 blocklist entry confirming prior malicious associations. This domain appears to be recently registered and rapidly weaponized, a tactic often used to evade long-term detection. Given the combination of social engineering, credential harvesting, and infrastructure obfuscation, the risk level is assessed as high.
If you visited beneficiosocablue.netlify.app, stop any input of personal or financial data immediately. Disable autofill for forms on this site and clear browser cache and cookies related to the session. Scan your device with updated antivirus software to detect any installed malware or keyloggers. Report the incident to your bank if you entered payment details, and change passwords for any accounts exposed during the visit. Use a separate device for sensitive logins for at least 24 hours. Monitor financial accounts and credit reports for signs of fraud. Report the URL to PhishDestroy and your organization’s security team for further analysis and blocking. Stay cautious of unsolicited offers promising benefits — verify legitimacy through official channels before engagement.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | beneficiosocablue.netlify.app |
malicious | Sinkholed |
| OpenDNS | beneficiosocablue.netlify.app |
phishing | Phishing Block |
| DNS4EU | beneficiosocablue.netlify.app |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 6 identified
Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 置信度 100%Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 置信度 100%Netlify providers hosting and server-less backend services for web applications and static websites.
www.netlify.com 置信度 100%jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of beneficiosocablue.netlify.app · checked Apr 30, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。