guileless-blancmange-a1f83d[.]netlify[.]app
“Netflix India – Watch TV Shows Online, Watch Movies Online”
guileless-blancmange-a1f83d.netlify.app — 内容不可用. 品牌冒充:Netflix; 诈骗类型:Credential Phishing. 证据摘要: VirusTotal 20/94 (Criminal IP, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 1 alert; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. 注册商: Netlify.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
guileless-blancmange-a1f83d.netlify.app is a credential theft phishing domain designed to harvest user login credentials under false pretenses. This site masquerades as a legitimate service while deploying deceptive forms to trick visitors into surrendering sensitive authentication data. The attackers leverage social engineering tactics to exploit user trust, often mimicking trusted brands or services to increase the likelihood of data submission. Once credentials are captured, threat actors can gain unauthorized access to accounts, enabling further exploitation such as financial theft, identity fraud, or lateral movement within compromised systems. The domain’s infrastructure and operational patterns align with known credential harvesting campaigns, posing a severe risk to individuals and organizations alike. This domain was flagged by multiple security vendors, with 11 out of 95 scanners on VirusTotal identifying it as malicious. It resolves to IP address 35.157.26.135 and is hosted on Netlify’s infrastructure, which has been abused by threat actors to deploy phishing pages due to its legitimate cloud hosting services. The domain carries a DigiCert SSL certificate, which may lend it an air of legitimacy to unsuspecting users. Additionally, Google Safe Browsing has classified this domain under the SOCIAL_ENGINEERING category, confirming its malicious intent. The combination of these technical indicators—low VirusTotal detection ratio, legitimate hosting provider, SSL encryption, and blocklist inclusion—paints a clear picture of a high-risk credential theft operation actively targeting users. If you have visited guileless-blancmange-a1f83d.netlify.app and entered any credentials or personal information, immediately change the passwords for those accounts and enable multi-factor authentication where available. Scan your device for malware using reputable antivirus software, as stolen credentials could be used to deploy additional malicious payloads. Report the domain to your organization’s security team or to platforms like Google Safe Browsing to aid in its takedown. Avoid interacting with this domain further and warn others who may have encountered it. For future protection, always verify URLs, use password managers to detect fake login pages, and rely on trusted security tools to block known malicious domains.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | guileless-blancmange-a1f83d.netlify.app |
phishing | Phishing Block |
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
Platform for deploying and hosting modern web applications.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of guileless-blancmange-a1f83d.netlify.app · checked Mar 26, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。