phila[.]revenue-ap[.]cc
“phila.revenue-ap.cc”
phila.revenue-ap.cc — 内容不可用. 证据摘要: VirusTotal 5/91 (Forcepoint ThreatSeeker, Fortinet, Gridinsoft, SOCRadar, Webroot); PhishDestroy score 65/100. 注册商: Dominet (HK).
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis of the domain phila.revenue-ap.cc indicates that it is actively being used for phishing operations and should be treated as a confirmed malicious site. The domain was registered on June 12, 2026 through Dominet (HK) Limited, a registrar known for low‑cost registrations and limited verification. It resolves to the single IPv4 address 170.106.51.191, which is the only hosting endpoint observed for this campaign. No additional infrastructure such as CDN or secondary IPs has been identified, suggesting a simple hosting setup that can be quickly taken offline if required.
The domain appears on one public security blocklist and has been explicitly blocked by the PhishDestroy mitigation service, confirming that external threat‑intel feeds recognize it as abusive. VirusTotal scans show that 5 out of 91 security vendors flag the domain as malicious, providing independent corroboration of its phishing nature despite the relatively low detection count. The threat is classified as generic phishing, with an elevated risk rating and an active status as of the report date, July 29, 2026.
Defenders should add phila.revenue-ap.cc to network deny lists, update URL filtering rules, and monitor outbound connections to the IP 170.106.51.191 for any anomalous traffic. Continuous re‑evaluation is advised, as additional indicators such as SSL certificate details, HTTP response codes, or page content have not yet been disclosed. Organizations receiving phishing attempts that reference revenue‑related services should treat any communications originating from this domain as fraudulent and advise users to avoid interaction.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。