florida[.]revenuetfz[.]cc
“florida.revenuetfz.cc”
florida.revenuetfz.cc — 内容不可用. 证据摘要: VirusTotal 13/91 (Criminal IP, BitDefender, CRDF, ESET, Forcepoint ThreatSeeker); PhishDestroy score 89/100. 注册商: Dominet (HK).
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain florida.revenuetfz.cc was registered through Dominet (HK) Limited on June 12 2026. DNS resolution points to the IPv4 address 43.166.241.242, which currently hosts the active payload. The domain is listed on a single security blocklist and has been explicitly blocked by the PhishDestroy service. VirusTotal analysis shows that 13 of 91 scanned security vendors have flagged the domain as malicious, indicating a non‑trivial consensus among detection engines.
No additional contextual data such as page title, SSL certificate details, or brand targeting has been published, so the exact content served by the site remains unknown. The limited blocklist presence combined with the moderate number of vendor detections suggests that the domain is being used in a generic phishing campaign, likely aimed at harvesting credentials or financial information, though the specific lure cannot be confirmed without content inspection. Defenders should treat the domain as hostile. Immediate mitigation steps include adding the domain and its resolved IP address to network‑level blocklists, updating endpoint protection signatures, and configuring web filtering solutions to deny traffic to the host.
Continuous monitoring of the IP 43.166.241.242 for any changes in hosting provider or additional malicious activity is recommended. Because the registrar is based in Hong Kong, take note that takedown requests may experience delays; proactive blocking remains the most reliable control. Organizations should also monitor for related sub‑domains that share the same registrar or IP range, as adversaries often generate additional domains to bypass defenses. In the absence of further forensic artifacts, this domain should be classified as elevated risk and handled accordingly.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。