Phishing detection: movistar-recaudo-epayc.com
Movistar Investigate
Domain
movistar-recaudo-epayc.com0 CT hosts on apex
IP
162.241.203.120
URL
https://movistar-recaudo-epayc.com
Cert
Let's Encrypt
Phishunt analysis Beta
28
low suspicionheuristic risk score · not a probability
Why?
- +5.3 Keyword match
- +5.1 urlscan.io
- +3.7 Brand in domain label
- +3.2 Young domain
- +3.0 Site cluster
- +2.2 Country mismatch
- +1.8 ASN reputation
- +0.9 No registrar lock
- +0.7 Brand in cert SAN
- +0.7 Bulletproof DNS
- +0.5 Young certificate
- +0.5 Long domain
- +0.3 Free CA
- +0.2 Hyphens
- +0.2 Suspicious TLD
- +0.1 External scripts
18 signals fired · detector v3.0.0
AI analysis AIBeta
Credential harvesting
Site impersonates Movistar, the Spanish telecom provider, using a payment-collection theme. Confirmed malicious by urlscan; the SSL certificate is issued in the brand name while the server runs in Brazil via Oracle Cloud, indicating a clear geographic mismatch.
urlscan.ioBrand in cert SANCountry mismatch
AI-generated from stored detector signals - the AI never visited the site. · 2026-08-25 · confidence 80%
Domain & Network
Whois
Registrar
PDR Ltd. d/b/a PublicDomainRegistry.com
Network
Country
Brazil
Hosting
Oracle Corporation
ASN
AS31898
TLS Cert
Let's Encrypt
External detection
urlscan.io
CleanGoogle Safe Browsing · OpenPhish · PhishTank · TweetFeed
Requests
Resources
Observables
Related websites
Report this phishing
Submit to blocklists
urlscan
VirusTotal
Whois
ipinfo
Greynoise