events-pumps[.]org
“Nur einen Moment…”
ملخص الأدلة
On 24 July 2026, the domain events-pumps.org was identified as hosting a generic phishing page. The site resolves to the IPv6 address 2606:4700:3030::6815:269, which is allocated to Cloudflare, Inc. (AS13335) and geolocated to the United States. The domain was registered on 6 August 2025 through NameSilo, LLC. The page title returned by the HTTP request is “Nur einen Moment…”, indicating the site presents a German‑language waiting message, but no further content has been captured. The TLS certificate is listed as “WE1”, and the domain has a Gridinsoft trust score of 0 out of 100, reflecting an extremely low reputation.
Threat intelligence platforms have flagged the domain; 1 of 93 security vendors on VirusTotal reported it as malicious, and it appears on a single external blocklist. PhishDestroy has actively blocked the address, and the current operational status is offline, suggesting the phishing infrastructure has been taken down or is no longer serving content. Analysis indicates that the domain is part of a short‑lived phishing campaign, likely leveraging Cloudflare’s CDN to hide the true backend server.
The lack of additional public detections beyond a single blocklist entry limits insight into the broader campaign scope. Defenders should continue to monitor the IPv6 address and the domain for any re‑appearance, enforce blocklisting of the address in perimeter defenses, and ensure that any email or web traffic referencing events-pumps.org is quarantined. Because the site is currently offline, immediate incident response actions such as takedown requests are unnecessary, but organizations should retain the indicator of compromise (IOC) for future correlation with phishing emails or credential‑harvesting attempts.
Data Coverage
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
تغطية قوائم الحظر
١٠ مصادر خارجية مراقبة · لقطة محفوظة 13/08/2026
لقطة محفوظة
معلومات النطاق
التفاصيل التقنيةDNS وأسماء TLS والطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
الاستخبارات الجنائية الرقمية
تحليل VirusTotal
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب