kleinanzelgen[.]de[.]57561718[.]my
“Inhalt wird geladen”
kleinanzelgen.de.57561718.my — المحتوى غير متوفر. نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 14/91 (0xSI_f33d, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLQuery 4 alerts; Spamhaus DBL_PHISH; PhishDestroy score 92/100. مسجّل النطاق: Global Domain Group.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This domain, kleinanzelgen.de.57561718.my, operates as an active credential harvesting phishing site designed to deceive users into submitting sensitive login information. Analysis indicates the site mimics legitimate authentication portals, likely targeting corporate or financial services, to capture usernames, passwords, and potentially multi-factor authentication codes. The infrastructure is configured to appear trustworthy, utilizing SSL encryption from Let's Encrypt to evade initial suspicion, while the underlying content is engineered to replicate the visual and functional elements of genuine platforms. Technical indicators confirm the malicious nature of this domain. It was registered on June 23, 2026, through Global Domain Group LLC, a registrar frequently associated with high-risk domains. The domain resolves to the IP address 34.111.179.208, hosted within Google LLC's AS396982 network, a common tactic to leverage reputable cloud infrastructure for phishing operations. Detection metrics further substantiate the threat: 13 out of 95 security vendors on VirusTotal flag the domain as malicious, and it appears on two independent security blocklists, including PhishDestroy and OpenPhish. The combination of recent registration, cloud-based hosting, and widespread detection underscores the high-risk classification. Users who have visited kleinanzelgen.de.57561718.my or entered credentials on the site should take immediate action to mitigate potential compromise. First, revoke any sessions or tokens associated with the credentials submitted, and reset passwords for all accounts where the same or similar credentials may have been reused. Enable multi-factor authentication on critical services if not already active. Monitor linked accounts for unauthorized activity, including financial transactions, email forwarding rules, or changes to security settings. If corporate credentials were exposed, report the incident to internal security teams to initiate an investigation and contain potential lateral movement. Finally, consider scanning affected devices for malware, as phishing sites may deploy additional payloads to maintain persistence.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | kleinanzelgen.de.57561718.my |
phishing | Phishing Block |
| Hagezi Threat Feed | kleinanzelgen.de.57561718.my |
malicious | Sinkholed |
| DNS4EU | kleinanzelgen.de.57561718.my |
malicious | Sinkholed |
| Quad9 DNS | kleinanzelgen.de.57561718.my |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
تحليل VirusTotal
الأدلة والتقارير الخارجية
PD-20260625-A3BBA5 Recipient: abuse@globaldomaingroup.com هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب