contafacilnu[.]online
“Verificação de Conta”
contafacilnu.online — 隐形 · 可达. 证据摘要: VirusTotal 10/91 (ESET, Forcepoint ThreatSeeker, G-Data, Gridinsoft, Kaspersky); CF Radar malicious; cloaking observed; PhishDestroy score 100/100. 注册商: NicNames.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, contafacilnu.online, is identified as an active phishing infrastructure specifically designed to impersonate Bradesco, a major Brazilian financial institution. The threat type is classified as credential harvesting, targeting users through fraudulent login portals that mimic legitimate banking interfaces. As of the latest analysis, the domain remains operational and poses an elevated risk to individuals accessing financial services online. Infrastructure analysis reveals the following technical indicators: contafacilnu.online was registered on June 25, 2026, through NicNames, Inc, a registrar frequently associated with high-risk domains. The domain resolves to the IP address 69.49.241.79, which has been linked to other phishing campaigns in recent months. Security vendor assessments on VirusTotal indicate that 4 out of 95 engines flag the domain as malicious, a relatively low detection rate that suggests the infrastructure may still be evading widespread automated detection. The SSL certificate is issued by Let's Encrypt, a common choice for phishing sites due to its free and automated issuance process, which does not require rigorous validation of the domain owner's legitimacy. Current status confirms that contafacilnu.online remains active and continues to host phishing content. Users are strongly advised to avoid interacting with the domain or entering any credentials on its associated pages. Financial institutions and security teams should update blocklists to include this domain and its resolving IP address. Individuals who may have accessed the site should immediately change their banking credentials and enable multi-factor authentication where available. Monitoring for unusual account activity is recommended, as compromised credentials may be used in subsequent fraudulent transactions or sold on underground forums.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
ICANN OVERSIGHT
认证和 RAA 背景
认证和 RAA 背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
所用技术 · 1 identified
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of contafacilnu.online · checked Jun 27, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。