nickles[.]cc
“Message”
证据摘要
This domain, nickles.cc, is identified as a generic phishing threat designed to deceive users into submitting sensitive credentials. Phishing sites of this nature typically mimic legitimate login portals for financial institutions, email providers, or corporate networks, tricking victims into entering usernames, passwords, or other authentication details. The stolen data is then exfiltrated to attacker-controlled servers for unauthorized access, financial fraud, or further exploitation. The page title 'Message' suggests a minimalist or deceptive interface, likely intended to appear as a system notification or urgent request to lower user vigilance. Analysis indicates nickles.cc was registered on February 21, 2026, an unusually future date that may indicate domain squatting or an error in registration records. The domain is flagged by 18 out of 95 security vendors on VirusTotal, reflecting moderate but consistent detection across threat intelligence platforms. It resolves to the IP address 217.60.62.75, hosted on AS56971 (Cloud infrastructure in Finland), a common pattern for bulletproof hosting providers used in phishing campaigns. The SSL certificate (R12) is a basic, domain-validated type, offering no assurance of legitimacy. Additionally, the domain appears on two security blocklists, including PhishDestroy and PhishingDB, further confirming its malicious classification. Users who visited nickles.cc should assume their credentials or sensitive data may have been compromised. Immediately change passwords for any accounts accessed or entered on the site, prioritizing financial, email, and work-related services. Enable multi-factor authentication (MFA) on all critical accounts to mitigate unauthorized access. Monitor financial statements and account activity for signs of fraudulent transactions. If corporate credentials were exposed, report the incident to IT security teams for further investigation. Clear browser cache and cookies to remove any residual session data, and scan the device for malware using updated security tools. Avoid interacting with any links or prompts from the domain, and verify the legitimacy of unexpected messages or login requests through official channels.
Data Coverage
网络安全情报
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月11日
检测时间线
-
Cloudflare Radar
已存储 Cloudflare Radar 扫描 · 打开扫描
VirusTotal 分析
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控