pec[.]solutions-finder[.]gq
“Index of /”
pec.solutions-finder.gq — 内容不可用. 诈骗类型:Crypto Scam. 证据摘要: VirusTotal 18/95 (Criminal IP, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, pec.solutions-finder.gq, was identified as a credential harvesting phishing site designed to steal login credentials, financial details, or other sensitive information. Phishing pages hosted on this domain likely mimicked legitimate services, such as banking portals, email providers, or corporate login pages, to deceive users into submitting their personal data. The absence of an SSL certificate further increases the risk, as any data transmitted would be sent in plaintext, making it easily interceptable by attackers. Analysis indicates the domain was flagged by 18 out of 95 security vendors on VirusTotal, confirming its malicious nature. It resolved to the IP address 172.93.120.134, hosted under AS393960 (Host4Geeks LLC) in the United States. The domain appeared on two security blocklists, including PhishDestroy and PhishingDB, and was observed with an open directory listing (page title: Index of /), a common indicator of hastily deployed phishing infrastructure. No registration details, such as creation date or registrar, were available in the provided data, but the lack of SSL and the use of a free gTLD (gq) are typical of low-effort phishing campaigns. If you visited pec.solutions-finder.gq or entered any information on the site, immediate action is required. First, change passwords for any accounts that may have been exposed, prioritizing email, financial, and work-related credentials. Enable multi-factor authentication (MFA) on all critical accounts to mitigate further risk. Monitor financial statements and credit reports for unauthorized activity, as stolen credentials may be used for fraud or identity theft. If the site was accessed on a work device, report the incident to your IT or security team to prevent potential network compromise. Finally, scan the device used to visit the site for malware, as phishing pages may also distribute malicious payloads.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。