Phishing detection: 38d8cygy7yl5kgvr.dropboxx.us
Dropbox Investigate
Domain
38d8cygy7yl5kgvr.dropboxx.us0 CT hosts on apex
IP
85.239.149.16
URL
http://38d8cygy7yl5kgvr.dropboxx.us
Cert
-
Phishunt analysis Beta
24
low suspicionheuristic risk score · not a probability
Keyword matchTweetFeedCountry mismatch
12 signals fired · detector v2.0.0
AI analysis AIBeta
Credential harvesting
Site impersonates Dropbox using a randomized subdomain on the typosquat domain dropboxx.us. Confirmed malicious by TweetFeed and hosted on low-reputation shared infrastructure in Germany, clustered with multiple similar Dropbox phishing pages on the same IP address.
TweetFeedSite clusterShared IP cluster
AI-generated from stored detector signals - the AI never visited the site. · 2026-07-24 · confidence 70%
Domain & Network
Whois
Network
Country
Germany
Hosting
DEDIK SERVICES LIMITED
ASN
AS207043
TLS Cert
-
External detection
TweetFeed
CleanGoogle Safe Browsing · OpenPhish · PhishTank · urlscan.io
Report this phishing
Submit to blocklists
urlscan
VirusTotal
Whois
ipinfo
Greynoise