precousdt[.]com[.]br
“Preço do USDT”
证据摘要
On 21 February 2026 the domain precousdt.com.br was registered through a Gmail‑based account and delegated to the NSONE name server cluster (dns1.p06.nsone.net through dns4.p06.nsone.net). DNS resolution points to the single IPv4 address 35.157.26.135, which belongs to Amazon.com, Inc. (AS16509) and geolocates to Germany. The web service is hosted on Netlify and presents an HTTPS endpoint secured by a Let’s Encrypt certificate (issuer E7). HTTP response headers include HTTP Strict Transport Security (HSTS), indicating the site enforces TLS for future connections. The page title returned by the server is “Preço do USDT”, suggesting the site is intended to display a price for the USDT stablecoin, a common lure in cryptocurrency‑related phishing campaigns.
The domain currently appears on one public security blocklist and is actively blocked by the PhishDestroy feed. Independent scanning on VirusTotal recorded a single positive detection out of ninety‑three antivirus engines, confirming that at least one vendor has identified malicious behavior. The Gridinsoft trust score is 0 out of 100, reinforcing the classification of the host as untrustworthy. According to the risk assessment, the infrastructure is considered elevated, but the site has been taken offline at the time of this analysis.
No additional evidence such as login forms or payloads has been observed, and the exact phishing kit or dropper remains unknown. Defenders should continue to block precousdt.com.br at DNS and proxy layers, monitor the associated IP range for reuse, and add the domain to internal blocklists. Given the Netlify hosting, future re‑hosting of the same content under a new domain is plausible; therefore, threat‑intel teams should watch for similarly titled pages and reuse of the same SSL certificate fingerprint. Ongoing observation of the NSONE name servers for rapid domain turnover is also advised.
已提交证据快照
- 已发送
- 台账记录
- 1
- 案件 ID
PD-20260124-C6BBA2- 已捕获页面标题
- Preço do USDT
- PDF 文件
- PDF 证据
完整证据文本
Acceptable Use Policy (AUP): The domain precousdt.com.br is engaged in phishing activities, which is a clear violation of your AUP prohibiting illegal activities, fraud, and deception.
Terms of Service (TOS): The continued operation of this domain constitutes a breach of your TOS, which reserves the right to suspend or terminate services for violations related to fraudulent activities.
Applicable Laws (BR):
Lei nº 12.737/2012 (Carolina Dieckmann Law): This law criminalizes unauthorized access to computer systems and data, which is applicable to phishing schemes that deceive users into providing sensitive information.
Lei nº 13.709/2018 (General Data Protection Law - LGPD): This law mandates the protection of personal data and prohibits its misuse, which is directly violated by phishing activities that aim to harvest personal information unlawfully.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny. Non-compliance with applicable laws and your own policies can result in severe penalties.
Data Coverage
威胁响应 Pipeline
阻止列表覆盖
监控中的外部数据源 10 个 · 已存快照 2026年8月12日
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of precousdt.com.br · checked Mar 2, 2026
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。
检查任意域名
使用存储的阻止列表、WHOIS、DNS 和公共扫描证据进行威胁分析
立即扫描举报网络钓鱼
将可疑域名提交至我们的威胁数据库——保护社区
报告实时威胁动态
最近的网络钓鱼报告和观察到的可用性变化
监控