eppert-limegas.click
Appeared in the .click zone on Saturday, September 5, 2026; by the end of that day the census found redirects elsewhere. Full domain report
Signals, not verdicts. A domain appears here because heuristics matched its name, its infrastructure or the page it served on its first day. Where a model has looked at it, that is shown as an opinion with a confidence, not as a finding. Nothing on this page says a site is malicious. Read the evidence and decide for yourself.
Own one of these names and think the listing is wrong? Tell us and a person will look.
What matched
Model opinions
The domain serves no content of its own and simply 301s to www.google.com — all Google branding, forms and links in the evidence belong to google.com, so there is no impersonation by this host. However, a hyphenated company-style name ('eppert-limegas') on a cheap .click TLD behind Cloudflare NS, parked on a neutral offsite redirect, is the classic dormant/cloaked staging shape for BEC or later phishing use; no decisive abusive content yet.
The domain eppert-limegas.click is a typosquat redirecting to www.google.com. The attacker-controlled domain uses a deceptive name (brand + unrelated words + suspicious TLD) to lure users, then redirects them to the real Google site. This redirect-to-legitimate-site pattern is a known phishing technique: users who click the malicious link are shown legitimate Google pages, lowering their suspicion, while the attacker's redirect domain captures referrer data, tracks clicks, or harvests any form s
A model looked at the screenshot and page text and wrote what it thought. It can be wrong, and it is not a finding.
What the page looked like on Saturday, September 5, 2026

Same data as JSON: /api/zone/domain/eppert-limegas.click. This page is not indexed by search engines and does not link to the site it describes.