fifaworldcup2026philadelphiahotels[.]com
fifaworldcup2026philadelphiahotels.com — Nicht bestätigt. Betrugstyp: Generic Phishing. Zusammenfassung der Beweislage: VirusTotal 11/91 (alphaMountain.ai, ArcSight Threat Intelligence, BitDefender, CRDF, Forcepoint ThreatSeeker); PhishDestroy score 88/100. Registrar: GoDaddy.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
This domain, fifaworldcup2026philadelphiahotels.com, is identified as a phishing infrastructure designed to deceive users seeking accommodations for the 2026 FIFA World Cup in Philadelphia. Analysis indicates the site mimics legitimate hotel booking platforms, likely harvesting personal and financial data under the guise of event-related reservations. The fraudulent nature of this domain aligns with common phishing tactics targeting high-profile sporting events, where demand for lodging creates opportunities for credential theft and financial fraud. Infrastructure analysis reveals multiple technical indicators confirming malicious intent. The domain was registered on June 12, 2026, through a major registrar, and resolves to the IP address 15.197.148.33. It appears on one security blocklist and is flagged by 6 out of 95 security vendors on a malware analysis platform. Additionally, the domain is referenced in four threat intelligence pulses, further corroborating its association with phishing campaigns. The SSL certificate, issued by a widely used certificate authority, does not mitigate the risk, as phishing sites frequently employ valid certificates to appear legitimate. Users who visited fifaworldcup2026philadelphiahotels.com should take immediate action to mitigate potential compromise. Disconnect the device from the network and scan for malware using updated security tools. Reset passwords for any accounts accessed after visiting the site, prioritizing financial and email credentials. Monitor bank statements and credit reports for unauthorized transactions, and report the incident to relevant fraud prevention authorities. If payment information was entered, contact the financial institution to block or reverse any fraudulent charges. Exercise heightened caution with unsolicited communications related to the 2026 FIFA World Cup, as additional phishing domains may emerge.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Technologien · 8 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 100 % KonfidenzBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100 % KonfidenzNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100 % KonfidenzOpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.
openresty.org 100 % KonfidenzExpress is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs.
expressjs.com 100 % KonfidenzApache Traffic Server is an open-source caching and proxying server that serves as an HTTP/1.1 and HTTP/2 reverse proxy with caching capabilities, load balancing, request routing, SSL termination, and support for advanced HTTP features.
trafficserver.apache.org 100 % KonfidenzTrustpilot is a Danish consumer review website which provide embed stand-alone applications in your website to show your most recent reviews, TrustScore, and star ratings.
business.trustpilot.com 100 % KonfidenzHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100 % KonfidenzVirusTotal-Analyse
Analyse der Website-Konfiguration
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt