kulnde-dkev[.]blogspot[.]am
“(none)”
kulnde-dkev.blogspot.am — Nicht bestätigt. Markenidentität: Wordpress; Betrugstyp: Brand Impersonation. Zusammenfassung der Beweislage: VirusTotal 16/91 (ADMINUSLabs, Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao); PhishDestroy score 95/100. Registrar: GOOGLE (ASN: 15169).
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
This domain kulnde-dkev.blogspot.am remains active with a high risk classification for brand impersonation of wordpress. Infrastructure analysis reveals resolution to IP 85.128.172.63 in PL under AS15967 Nazwa.pl Sp.z.o.o. Registration occurred through GOOGLE with ASN 15169. VirusTotal records detections by 15 of 95 vendors while Gridinsoft assigns a trust score of 0 out of 100. The domain appears on 2 security blocklists and carries blocks from PhishDestroy and PhishingDB. HTTP status returns 302 with an SSL certificate issued by Google Trust Services / WE2.
Technologies identified on the endpoint include Apache HTTP Server, jQuery, Google Hosted Libraries, Google Analytics and Clipboard.js. The scam type is recorded as Impersonation (wordpress) with no page title present. Current status confirms continued operation as of July 12 2026. These data points establish the domain as flagged infrastructure without reliance on unverified assumptions about registration timing or additional attributes.
Page content details are unavailable because the title field is empty and direct site inspection has not occurred. Uncertainty therefore exists around the precise redirection target or any additional scripts beyond the listed technologies. Defenders should treat the combination of 15 VirusTotal flags, zero trust score and two blocklist appearances as actionable indicators. Blocking the IP 85.128.172.63 and monitoring traffic to the domain is recommended while cross-referencing existing blocklist entries for related indicators of compromise.
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 5 identified
Most widely used open-source HTTP server software.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Web analytics service tracking website traffic and user behavior.
marketingplatform.google.comVirusTotal-Analyse
Archivierte Beweise
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt