Zum Sicherheitsbericht springen
⚠️
Diese Domain wurde als bösartig markiert.
Sicherheits-Engines melden eine Entdeckung: 2. Seien Sie äußerst vorsichtig – Geben Sie keine Anmeldeinformationen oder persönlichen Daten ein.
Domänensicherheit und Bedrohungsinformationen

config-update[.]online

“config-update.online/”

Drohungsurteil Hoch 56/100 Evidenzbewertung
Verfügbarkeit Inhalt nicht verfügbar Der Inhalt war in der letzten Beobachtung nicht verfügbar
VirusTotal-Erkennungen: 2/93 Betrugstyp: Credential Phishing
02.02.2026 1 Report Sent

Zusammenfassung der Beweislage

HOCH
Evidence score
56/100

Analysis of the domain config-update.online indicates a credential phishing campaign active since its registration on February 21, 2026, through HOSTINGER operations, UAB. The domain resolves to the IP address 45.61.157.248, hosted under AS14956 (RouterHosting LLC) in the United States. Nameservers ns1.dns-parking.com and ns2.dns-parking.com are associated with the infrastructure, a pattern observed in other low-reputation domains leveraging parking or bulletproof hosting services. As of July 24, 2026, the domain has been taken offline, though it remains flagged on three security blocklists, including PhishDestroy, MetaMask, and SEAL, suggesting prior malicious activity.

No SSL certificate was detected, increasing the likelihood of interception or tampering during credential transmission. The page title, config-update.online/, provides no explicit brand targeting, and no phishing kit or specific scam subtype (e.g., crypto, banking, or corporate login) has been confirmed in available intelligence. Gridinsoft assigns a trust score of 0/100, reinforcing its classification as high-risk. While two of 93 security vendors on VirusTotal flagged the domain, this detection rate alone does not confirm the full scope of compromise or the effectiveness of mitigations.

Defenders are advised to treat this domain as compromised for the duration of its registration period. Blocklist integration is recommended, particularly for organizations using PhishDestroy, MetaMask, or SEAL. Given the absence of SSL and the use of a hosting provider historically linked to malicious activity, network-level blocking of 45.61.157.248 and monitoring of associated nameservers may reduce exposure. No further content analysis is available at this time, and the domain’s offline status limits additional forensic review.

Momentaufnahme der übermittelten Beweise

Gesendet
Protokolleinträge
1
Fall-ID
PD-20260202-D79E3E
Titel der erfassten Seite
config-update.online/
PDF-Artefakt
PDF-Beweis
Vollständiger Beweistext
Policy Violations:
Section 3.1 of the AUP: The domain config-update.online is engaged in phishing activities, which directly contravenes your Acceptable Use Policy prohibiting illegal activities and fraud.
Section 5.2 of the TOS: The domain's operation constitutes a violation of your Terms of Service, which reserves the right to suspend or terminate services for activities that involve deception and fraud.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA) - 18 U.S.C. § 1030: This federal law prohibits unauthorized access to computers and the use of such access to commit fraud.
Wire Fraud Statute - 18 U.S.C. § 1343: This statute criminalizes schemes to defraud individuals or entities through electronic communications.
CAN-SPAM Act - 15 U.S.C. § 7701: This law regulates commercial email and prohibits deceptive practices in electronic communications.
Regulatory Note: Failure to take immediate action against this domain may expose your organization to legal liability and regulatory scrutiny for facilitating fraudulent activities. It is imperative to comply with your AUP and TOS to mitigate potential risks.
VirusTotal
VirusTotal
2 det.
Beobachteter Status
Inhalt nicht verfügbar HTTP 502
PhishDestroy
DestroyList
Gelistet
Reports Sent
1

Data Coverage

VirusTotal 2 / 93 URLQuery checked — no detections recorded PhishStats nicht geprüft OTX no community references CF-Radar scan completed URLScan capture gespeicherter Bericht URLScan verdict Analyse abgeschlossen DNS-Sperren nicht geprüft TLS keine Zertifikatsdaten WHOIS not parsed Screenshot 3 captures · 3 sources Weiterleitungskette nicht untersucht
Sicherheitssignale
SA Scamadviser Warnings
According to Tranco this site has a low rank This website is (very) young.
The SSL certificate is valid This website is safe according to DNSFilter

Pipeline zur Reaktion auf Sicherheitsbedrohungen

Entdeckung
Checks
Reports
Verfügbarkeit
12/12

Blocklistenabdeckung

10 überwachte externe Feeds · gespeicherter Stand 11.08.2026

10 überwachte externe Feeds Kein Treffer

Erkennungszeitleiste

  1. Cloudflare Radar

    Cloudflare-Radar-Scan gespeichert · Scan öffnen

Gespeicherte Aufnahme

Seitentitel
config-update.online/

Domain-Intelligenz

Domain
URLScan Verdict Analyse abgeschlossen score 0 report ↗
Server / ASN Apache/2.4.58 (Win64) OpenSSL/3.1.3 PHP/8.2.12 · AS14956 RouterHosting LLC
IP-Reputation IP abuse confidence 0/100 0 reports checked 16.06.2026
Registrar Hostinger LT(LT)
IP-Adresse 45.61.157.248 US
StandortUS Las Vegas, US
NetzwerkAS14956 · RouterHosting LLC
HTTP-Status502 Error
Zeit bis zur ersten Nichtverfügbarkeit 101 days
Was wir zählen Verstrichene Zeit von der ersten gespeicherten Missbrauchsmeldung bis zur ersten Feststellung, dass der Inhalt nicht verfügbar war. Damit ist die Ursache nicht geklärt.
Was jeder Bericht enthält Gespeicherte Ausgangsberichtsaufzeichnungen können auf zu diesem Zeitpunkt verfügbare Beweise verweisen, wie z. B. Urteile von Anbietern, Registrierungsdaten, Hosting-Details, Klassifizierungen oder Screenshots. Diese Seite lässt keine Rückschlüsse auf die genaue zugestellte Nutzlast, den Empfang, die Bestätigung oder die Aktion eines Empfängers zu.
Technische DetailsDNS, TLS-Namen und Zeitstempel
Erstmals entdeckt02.02.2026
DOM Analysisanalyzed 23.04.2026DOM analysis score 0/100
Submitted URLhttp://config-update.online/
Nameserverns1.dns-parking.comns2.dns-parking.com
TLS-Beobachtunggeprüft am 17.06.2026
ICANN OVERSIGHT

Akkreditierung und RAA-Kontext

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Nichts wird automatisch gesendet.
Diese Domain melden Reichen Sie Beweismaterial ein und helfen Sie mit, andere zu schützen

VirusTotal-Analyse

2 / 93 Sicherheitsanbieter haben diese Domain markiert
View on VT
Last analyzed
Gridinsoft
SOCRadar

Wurden Sie von dieser Website betroffen?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.

Europol
Finden Sie den offiziellen Meldekanal für Ihr EU-Land
National police directory
Vorsicht vor Betrügern, die mit der Rückforderung von Geldern locken! Kriminelle nehmen unter Umständen erneut Kontakt zu Opfern auf und geben dabei vor, Ermittler, Anwälte oder Beitreibungsbeamte zu sein. Zahlen Sie keine Vorabgebühren und geben Sie keine Anmeldeinformationen weiter. Erfahren Sie mehr über Betrug im Zusammenhang mit Wiederaufbaumaßnahmen →

Melden Sie sich bei Ihren örtlichen Behörden

Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.

97-Länder-Verzeichnis
KI-gestützter Entwurf – Vorfalldetails werden vom KI-Anbieter verarbeitet Überprüfen Sie es und reichen Sie es selbst ein

Jede beliebige Domain prüfen

Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise

Jetzt scannen

Phishing melden

Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community

Melden

Echtzeit-Bedrohungsfeed

Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen

Überwachen

Bleiben Sie auf dem Laufenden, bleiben Sie sicher

Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt

Echtzeit-Bedrohungsfeed Einspruch gegen diesen Eintrag einlegen

Externe Tools

ScamAdviserScamAdviser Vertrauenswert 64/100Status: Likely SafeQuelle öffnen
HTML · IFRAME

Diesen Bericht einbetten

Teilen Sie diese Bedrohungsinformationen auf Ihrer Website oder in Ihrem Blog

embed.html
<iframe
  src="https://phishdestroy.io/de/embed/domain/config-update.online"
  title="PhishDestroy threat report for config-update.online"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Ein sehr aufrichtiges Dankesschreiben

Generator für satirische Entwürfe

Empfänger
Gebührenkontext

Satirischer Entwurf. Die Gebührenangaben sind Schätzungen; eine genaue Zuordnung zu dieser Domain wird nicht behauptet.