Phishing detection: ceteris.fr

Wells Fargo
https://ceteris.fr/wp-content/plugins/www.wellsfargo.com/onlinebanking/updates/logon_verify/wellsfargo Access site
Screenshot
Screenshot of ceteris.fr
Investigate
Domain ceteris.fr2 CT hosts on apex
URL https://ceteris.fr/wp-content/plugins/www.wellsfargo.com/on…
Phishunt analysis Beta
30 low suspicionheuristic risk score · not a probability
Keyword matchBrand impersonation in pathCredential path
16 signals fired · detector v2.0.0
AI analysis AIBeta
Credential harvesting

A compromised French OVH-hosted website embeds a fake Wells Fargo online banking login page in a path mimicking the bank's domain structure. Google Safe Browsing classifies it as social engineering and OpenPhish confirms active phishing targeting US banking credentials.

Brand impersonation in pathCredential pathGoogle Safe Browsing
AI-generated from stored detector signals - the AI never visited the site. · 2026-08-15 · confidence 85%
Domain & Network
Whois
Registrar OVH
Network
Country FranceFrance
Hosting OVH SAS
ASN AS16276
TLS Cert -
External detection Google Safe Browsing OpenPhish
GSB category: SOCIAL_ENGINEERING
CleanPhishTank · TweetFeed · urlscan.io
Report this phishing
Network / ASN OVH SAS
Brand owner Wells Fargo

Tracked from 2026-08-15 13:01 UTC  ·  Last refreshed 2026-08-22 01:30 UTC