Zum Sicherheitsbericht springen
Checked 09.08.2026 Ref A5DEBE95

MALICIOUS — CRITICAL

gacitieis[.]com

This domain, gacitieis.com, is identified as a generic phishing site.

100/100 evidence score · Critical
VirusTotal
15/91
Blocklists
No stored match
Verfügbarkeit
Letzter bekanntermaßen aktiv · HTTP 200
Report / Add Evidence Appeal this listing
2026-04-25 00:24 UTCLetzter bekanntermaßen aktiv · HTTP 200

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Diese Domain wurde als bösartig markiert.
Sicherheits-Engines melden eine Entdeckung: 15. Seien Sie äußerst vorsichtig – Geben Sie keine Anmeldeinformationen oder persönlichen Daten ein.
Jump to section
Berichtsübersicht

gacitieis.com — Letzter bekanntermaßen aktiv (HTTP 200). Zusammenfassung der Beweislage: VirusTotal 15/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, ESET); URLQuery 6 alerts; CF Radar malicious; PhishDestroy score 100/100. Registrar: Wild West Domains.

Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.

Evidence Analysis

Ref A5DEBE95

This domain, gacitieis.com, is identified as a generic phishing site. Visiting this domain can expose users to various phishing attacks, which are designed to steal sensitive information such as login credentials and financial data. The risk level is elevated, and the domain is currently offline, but it is important to remain vigilant as phishing sites can be quickly reactivated.

Infrastructure analysis reveals that gacitieis.com resolves to the IP address 144.172.114.251, which is located in the United States and is associated with FranTech Solutions. The domain was created on April 24, 2026, and is registered through Wild West Domains, LLC. According to VirusTotal, 18 out of 95 security vendors have flagged this domain as malicious. The SSL certificate is registered as ubuntu-Utah-2gb, and the domain was taken offline and blocked by PhishDestroy. These indicators collectively suggest that the domain was likely used for phishing activities and poses a significant risk to users.

If a user has visited gacitieis.com, it is recommended to immediately change passwords for any accounts that may have been compromised. Run a full system scan using updated antivirus software to detect and remove any potential malware. Monitor financial statements and credit reports for any unauthorized transactions or activity. Additionally, users should be cautious of any unsolicited emails or messages that may contain links or requests for personal information, as these could be part of the same phishing campaign.

VirusTotal
VirusTotal
15 det.
URLQuery
URLQuery
6 threat alerts
OTX references
CF-Radar
Schädlich
TLS-Zertifikat
ubuntu-Utah-2gb
Alter
4 mo
Beobachteter Status
Letzter bekanntermaßen aktiv 200
PhishDestroy
DestroyList
Gelistet
Datenabdeckung12 recorded checks
VirusTotal 15 / 91 URLQuery 6 threat-system alerts PhishStats nicht geprüft OTX 1 community reference CF-Radar provider verdict: malicious URLScan capture not submitted URLScan verdict Bewertung nicht verfügbar DNS-Sperren nicht geprüft TLS valid certificate, 3543d WHOIS 4 mo old Screenshot stored capture Weiterleitungskette nicht untersucht
Erkenntnisse zur Netzwerksicherheit
Threat Detection Systems 6 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS gacitieis.com malicious Sinkholed
OpenDNS gacitieis.com phishing Phishing Block
Hagezi Threat Feed gacitieis.com malicious Sinkholed
DNS4EU gacitieis.com malicious Sinkholed
Quad9 DNS gacitieis.com malicious Sinkholed
DigiCert UltraDNS gacitieis.com malicious Sinkholed
CF Cloudflare Radar Verdict Schädlich
Phishing Security threats Phishing

Pipeline zur Reaktion auf Sicherheitsbedrohungen

Entdeckung
Checks
Reports
Verfügbarkeit
10/12

Status der öffentlichen Sperrliste

Gespeicherte Aufnahme

Seitentitel
Apache2 Ubuntu Default Page: It works
TLS-Zertifikat
Valid transport encryption · Ausgestellt von ubuntu-Utah-2gb · valid for 3543 days

Domain-Intelligenz

Domain
Server / ASN AS14956 RouterHosting LLC
IP-Reputation abuse score 0/100 0 reports checked 13.07.2026
Registrar Wild West Domains
IP-Adresse 144.172.114.251 US
StandortUS Ogden, US
NetzwerkAS14956 · FranTech Solutions
RegistrierungErstellt 24.04.2026 (106d)
HTTP-Status200
Technische DetailsDNS, SSL-SANs, Zeitstempel
Erstmals entdeckt15.06.2026
Nameserverns2.bdm.microsoftonline.com
TLS Fingerprint
TLS Observationvalid from 24.04.2026scanned 24.04.2026
TLS SAN Domainsubuntu-utah-2gb
ICANN OVERSIGHT

Akkreditierung und RAA-Kontext

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Nichts wird automatisch gesendet.
Technologien · 2 identified
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org 100 % Konfidenz
OpenResty
Web servers

OpenResty is a web platform based on nginx which can run Lua scripts using its LuaJIT engine.

openresty.org 100 % Konfidenz
Detected via Cloudflare Radar · Wappalyzer engine
Diese Domain melden Reichen Sie Beweismaterial ein und helfen Sie mit, andere zu schützen

VirusTotal-Analyse

15 / 91 Sicherheitsanbieter haben diese Domain markiert
View on VT
Last analyzed Previous stored snapshot: 18 detections
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Kaspersky
Lionic
SOCRadar
Sophos
VIPRE
Webroot
Nachweise und externe BerichteIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.

Europol
Finden Sie den offiziellen Meldekanal für Ihr EU-Land
National police directory
Vorsicht vor Betrügern, die mit der Rückforderung von Geldern locken! Kriminelle nehmen unter Umständen erneut Kontakt zu Opfern auf und geben dabei vor, Ermittler, Anwälte oder Beitreibungsbeamte zu sein. Zahlen Sie keine Vorabgebühren und geben Sie keine Anmeldeinformationen weiter. Erfahren Sie mehr über Betrug im Zusammenhang mit Wiederaufbaumaßnahmen →

Melden Sie sich bei Ihren örtlichen Behörden

Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.

97-Länder-Verzeichnis
KI-gestützter Entwurf – Vorfalldetails werden vom KI-Anbieter verarbeitet Überprüfen Sie es und reichen Sie es selbst ein
Diesen Bericht einbettenRead-only HTML widget
HTML · IFRAME

Diesen Bericht einbetten

Teilen Sie diese Bedrohungsinformationen auf Ihrer Website oder in Ihrem Blog

embed.html
<iframe
  src="https://phishdestroy.io/de/embed/domain/gacitieis.com"
  title="PhishDestroy threat report for gacitieis.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Ein sehr aufrichtiges Dankesschreiben

Generator für satirische Entwürfe

Empfänger
Gebührenkontext

Satirischer Entwurf. Die Gebührenangaben sind Schätzungen; eine genaue Zuordnung zu dieser Domain wird nicht behauptet.