mistrkredit[.]cz
“Našel Jsem To”
mistrkredit.cz — Nicht bestätigt. Zusammenfassung der Beweislage: VirusTotal 16/91 (ADMINUSLabs, ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao); URLQuery 1 alert; 1 external blocklist match (Enkrypt); PhishDestroy score 95/100.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Analysis of mistrkredit.cz, registered on February 21 2026, shows an active generic phishing infrastructure with a high risk rating. The site returns HTTP 200 and presents the page title “Našel Jsem To”. DNS resolution points to IP 162.19.138.4, hosted in Germany under AS16276 (OVH SAS). The domain uses a Let’s Encrypt certificate (E8) and is served by Nginx, with additional client‑side components including Microsoft Advertising, Google Tag Manager, Google Hosted Libraries, Google Font API, Google Analytics, and Facebook Pixel. MX records are configured with mx1.active24.com (priority 10) and mx2.active24.com (priority 20), and the authoritative nameservers are gama.ns.active24.sk, beta.ns.active24.cz, and alfa.ns.active24.cz. Reputation scoring is extremely low (Gridinsoft 0/100) and the domain appears on two security blocklists, currently blocked by PhishDestroy and Enkrypt. VirusTotal scans report four detections out of 93 vendors. While the exact phishing payload and target audience have not been publicly disclosed, the combination of a fresh registration, low trust score, active web service, and multiple security vendor flags indicates a deliberate malicious operation. Defenders should block the domain and its IP at perimeter defenses, add the address to internal threat feeds, monitor for related DNS queries, and consider sinkholing the host to disrupt future activity. Continuous re‑evaluation is advised as additional indicators may emerge.
Erkenntnisse zur Netzwerksicherheit
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Quad9 DNS | mistrkredit.cz |
malicious | Sinkholed |
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 8 identified
High-performance HTTP server and reverse proxy, known for stability and low resource usage.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Tag management system for deploying marketing and analytics tags.
tagmanager.google.comWeb analytics service tracking website traffic and user behavior.
marketingplatform.google.comConversion-tracking pixel by Meta — logs page views and custom events to Facebook/Instagram ad accounts.
www.facebook.comVirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of mistrkredit.cz · checked Mar 6, 2026
Analyse der Website-Konfiguration
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt