mocoyuk[.]kedirikota[.]go[.]id
“Login”
mocoyuk.kedirikota.go.id — Nicht bestätigt. Betrugstyp: Credential Phishing. Zusammenfassung der Beweislage: VirusTotal 1/91 (Gridinsoft); PhishDestroy score 63/100. Registrar: PANDI Registrar.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
PhishDestroy has identified mocoyuk.kedirikota.go.id as a confirmed phishing site designed to steal login credentials through a fraudulent login page. The domain masquerades as an official government portal, likely to trick users into entering sensitive information such as usernames and passwords. This specific threat is categorized as generic phishing, meaning it does not target a specific brand but instead uses a generic login interface to harvest credentials from unsuspecting visitors.
Evidence gathered during investigation shows that the domain was created on March 27, 2026, a very recent date that aligns with typical phishing operations. It resolves to IP address 103.78.106.119 and is registered through PANDI Registrar. VirusTotal reports 0 out of 95 security vendors detecting the domain as malicious, indicating it has not yet been widely flagged. However, it appears on 1 security blocklist, confirming that at least one threat intelligence source has identified it as risky. The domain's SSL certificate is issued by Sectigo Limited under the Sectigo Public Server Authentication CA OV R36, which is a legitimate certificate authority, adding a veneer of credibility to the scam.
If you have visited mocoyuk.kedirikota.go.id and entered any personal information, you should immediately change passwords for any accounts that may have been compromised and enable two-factor authentication where available. Monitor your accounts for suspicious activity and consider using a credit monitoring service. As the domain is currently offline, the immediate threat is contained, but similar phishing sites may emerge. PhishDestroy recommends staying vigilant and verifying the authenticity of any login page before entering credentials.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
VirusTotal-Analyse
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt