camerica[.]co[.]com
“www.camerica.co.com”
证据摘要
This domain, camerica.co.com, is actively engaged in credential harvesting phishing operations targeting users through deceptive login interfaces. Analysis indicates the site mimics legitimate authentication portals to capture sensitive credentials, including usernames, passwords, and potentially multi-factor authentication tokens. The infrastructure is designed to exploit trust in well-known brands or services, redirecting victims to fraudulent pages that closely resemble genuine platforms. Given its long-standing registration and current activity, this domain poses a significant risk to both individual and organizational security, particularly for those unaware of phishing tactics or lacking endpoint protection. Infrastructure analysis reveals the domain was registered on August 16, 1997, through Moniker Online Services LLC, a registrar historically associated with abusive registrations. It currently resolves to the IP address 188.114.97.3, hosted on autonomous system AS13335, a network frequently utilized for bulletproof hosting and content delivery. The domain is flagged by 17 out of 95 security engines on VirusTotal, indicating widespread detection as malicious. Additionally, it appears on four independent security blocklists, including those maintained by threat intelligence communities and browser-based protection systems. The absence of an SSL certificate further underscores the lack of basic security measures, increasing the likelihood of interception or tampering during credential transmission. Users who have visited camerica.co.com or interacted with its content are advised to take immediate remedial action. First, revoke any credentials entered on the site, particularly those reused across multiple platforms. Reset passwords for all associated accounts using a secure, password-managed solution to generate unique, complex credentials. Enable multi-factor authentication where available, preferably using app-based or hardware tokens rather than SMS-based methods. Monitor financial and communication accounts for unauthorized activity, and report any suspicious transactions to the relevant service providers. Organizations should block the domain and its resolving IP at the network perimeter and conduct internal investigations to determine if any credentials were compromised. Endpoint detection systems should be updated to include this domain in their threat intelligence feeds to prevent future exposure.
Data Coverage
安全信号
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月13日
检测时间线
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
社区报告
由 1 名社区成员报告;首次发现于 2025年12月21日
- 已存储报告
- 1
- 已报告的唯一 URL
- 1
社区情报
1 条社区报告
类别PHISHING
Detection Summary The Anti-Phishing Volunteers & Associates Security Incident Response System has flagged this as a domain threat, classified as phishing attack against SushiSwap. Threat detected at 2025-12-18T17:02:23.060Z.
域名情报
技术详情DNS、TLS 名称和时间戳
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控