rodovias-br.live

Critical Risk

Critical Risk
Phishing / Credential Theft
Captured page preview of rodovias-br.live

At a glance

Antivirus · registration · identity
Antivirus detections
3 flagged
3 malicious · 0 suspicious
ESET
Domain registration
Jul 19, 2026Registered
0 days oldAt scan time
Operator identity
Claimed Only
Contact details are present but not independently verified
Verified factsSaved with this scan
  1. 3 engines classified the URL as malicious and 0 as suspicious; 54 returned harmless, 35 returned undetected, and 0 returned no usable result.
  2. The domain was registered Jul 19, 2026 and was 0 days old at scan time.
  3. Operator identity: Claimed Only. Contact details are present but not independently verified
  4. Google Safe Browsing returned no listed threat categories for this address at scan time.
  5. The site presented a valid TLSv1.2 certificate at scan time.

Website Preview

Captured page preview of rodovias-br.live
Visual findings

This site exhibits characteristics of a phishing portal designed to harvest vehicle information under the guise of a toll payment service. The lack of transparent organizational details and the focus on immediate data entry for 'debt searching' are high-risk indicators.

  1. 1The site uses a generic 'Pedágio Digital' branding which is frequently associated with phishing campaigns targeting Brazilian toll payment systems.
  2. 2The primary call-to-action form prompts for a vehicle license plate ('placa') to 'search for debts', a common tactic to lure users into fake payment portals.
  3. 3The interface lacks verifiable contact information, physical address, or official regulatory registration details typical of legitimate government or financial services.
  4. 4The design is highly simplified, focusing exclusively on data harvesting via the license plate input field.
  5. 5The site mimics the aesthetic of official transit services to create a false sense of legitimacy.

Web Research

No independently sourced claims were found for this report.

Threat Detection

Antivirus results, browser warnings, isolated page observations, and the threat pattern identified in this report.

Antivirus distribution
Recorded engine classifications, not a blanket clean bill
92 engines
Malicious3
Suspicious0
Harmless54
Undetected35
No result0
Antivirus consensus

Antivirus engine results

Result date Jul 20, 2026
Detection matrix
3 engines flagged this URL

This scan saved classifications from an antivirus network of 92 engines. Each malicious or suspicious classification is listed below by engine name and should be weighed with the rest of the report.

3Malicious0Suspicious54Harmless35Undetected0No result92Engines
0
of 92
ESET
Malicious· phishing
Forcepoint ThreatSeeker
Malicious· phishing
Kaspersky
Malicious· phishing

3 antivirus engines flagged this URL. A single classification is not consensus by itself. Review its label together with the page, identity, behavior, and history evidence shown in this report.

Threat pattern
Phishing / Credential Theft
Threat tags
phishingdata harvester
Scam-Type Likelihood

2 of 22 categories showed signals

This profile separates the site's primary threat from other patterns supported by the saved page evidence, public research, and security findings.

Top match: Phishing
Phishing
High likelihood
90/100
  • ESET, Forcepoint ThreatSeeker, and Kaspersky all flag the domain as phishing
  • Page presents login and account creation forms
  • Primary CTA is a license-plate lookup form that leads to account creation
  • Visual analysis identifies the site as a phishing portal harvesting vehicle data
Data Harvester
High likelihood
85/100
  • Site solicits vehicle plate numbers to 'search for debts'
  • Requires account creation to request receipts or access features
  • No domain-matched email addresses; contact listed as atendimento@pedagiodigital.com on external domain
  • No postal address or official registration details provided

Technical Details

Identity, domain, infrastructure, and connection facts saved with this scan.

July 20, 2026 at 1:04 PM UTC

Identity

6 facts
Operator
Claimed Only
On-domain email
Not observed
Other email
2 addresses
Phone
1 number
Postal address
Not observed
Social profiles
2 links

Domain

8 facts
Domain age
0 days old
Registered
Jul 19, 2026
Registrar
GoDaddy.com, LLC
Expires
Jul 19, 2027
WHOIS updated
Jul 19, 2026
Registrant
Unavailable
Registration country
Unavailable
WHOIS privacy
Not observed

Infrastructure

14 facts
HTTPS
Valid certificate
TLS protocol
TLSv1.2
Certificate issuer
Let's Encrypt · YR1
Certificate subject
cpanel.rodovias-br.live
Certificate valid from
Jul 19, 2026
Certificate valid to
Oct 17, 2026
Network address
132.148.180.53
ASN
Unavailable
Hosting organization
GoDaddy.com, LLC
Country
US
Server
Apache
Site platform
Unavailable
IP reputation
0% confidence · 0 reports
Tor exit node
No

Connections

13 facts
Scan scope
Domain
Destination host
rodovias-br.live
Redirects
0
Cross-domain redirect
No
Redirect status codes
200
Lookalike characters
Not observed
Internationalized domain
No
Page response
200
Observation coverage
Unavailable
Extracted links
Unavailable
Unique IPs contacted
Unavailable
Countries contacted
Unavailable
Referenced domains
11

What to do

1
Before interacting
Do not sign in
2
If you already interacted

If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.

Final Verdict

Do not sign in

Key evidence

  1. 13 engines classified the URL as malicious and 0 as suspicious; 54 returned harmless, 35 returned undetected, and 0 returned no usable result.
  2. 23 of 92 security services reported a concern.
  3. 3The domain was registered 0 days ago.
Evidence: strongScope: DomainFresh scan: July 20, 2026 at 1:04 PM UTC

Safety FAQ

What should I do about rodovias-br.live?+

Do not sign in.

How old is rodovias-br.live?+

rodovias-br.live is 0 days old and was registered jul 19, 2026.

What if I already interacted with rodovias-br.live?+

If you entered a password, change it on the official service by typing its known address yourself, enable two-factor authentication, and review recent account activity. Contact your bank if you also entered payment details.

When was this report updated?+

This report reflects the scan completed July 20, 2026 at 1:04 PM UTC.