pepumainnet[.]live
“Apache2 Ubuntu Default Page: It works”
Gespeicherte Erkennung
Cloaking-Warnung
- Cloaking-Typ
content_divergence- Cloaking-Wert
- 2/6
Zusammenfassung der Beweislage
The domain pepumainnet.live was registered on 21 February 2026 through NameSilo, LLC and points to the Cloudflare‑owned address 172.67.216.96 (AS13335, United States). DNS resolution uses Cloudflare name servers aurora.ns.cloudflare.com and dion.ns.cloudflare.com, and the site was served over HTTPS with a certificate issued by Google Trust Services under the WE1 root. HTTP probing returned the default Apache2 Ubuntu page titled “Apache2 Ubuntu Default Page: It works”, indicating no application‑layer content was observed before the domain was taken offline. Reputation scoring from Gridinsoft assigned a trust score of 0 / 100, and four of ninety‑three VirusTotal scanners flagged the domain as malicious.
The domain appears on five security blocklists and is currently listed by PhishDestroy, ScamSniffer, Polkadot, Enkrypt, and Codeesura. All observed indicators point to a generic phishing campaign, though the specific payload or targeted brand has not been disclosed. Because the infrastructure relies on Cloudflare’s CDN and HTTP/3, attribution to a particular operator is obscured, and the offline status prevents further content analysis.
Defenders should block the domain at network perimeter and DNS layers, add the associated IP address 172.67.216.96 to any internal deny lists, and monitor for re‑registration or similar domains using the same registrar or name‑server pattern. Continuous review of threat‑intel feeds for new detections linked to the same certificate issuer or Cloudflare edge nodes is recommended. Any future resolution of the domain should be inspected immediately for credential‑harvesting forms or redirects, and incident response teams should be prepared to contain potential credential exposure.
Momentaufnahme der übermittelten Beweise
- Gesendet
- Protokolleinträge
- 1
- Fall-ID
PD-20260124-E870C2
Rechtsgrundlage
Vollständiger Beweistext
Section 3.1 of AUP: The domain pepumainnet.live is engaged in phishing activities, which directly contravenes the prohibition against illegal activities and deception.
Section 5.2 of TOS: The registrar reserves the right to suspend services for violations of the AUP. The ongoing use of this domain for fraudulent purposes warrants immediate action.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. federal law prohibits unauthorized access to computer systems and is applicable to phishing schemes that deceive users into providing sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): This law addresses schemes to defraud individuals or entities using electronic communications, including phishing activities.
CAN-SPAM Act: This law regulates commercial email and prohibits misleading headers and deceptive subject lines, which are often used in phishing attacks.
Regulatory Note: Failure to take prompt action against this domain may expose your organization to liability under applicable laws and regulations. Non-compliance could result in regulatory scrutiny and potential penalties.
Data Coverage
Erkenntnisse zur Netzwerksicherheit
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Blocklistenabdeckung
10 überwachte externe Feeds · gespeicherter Stand 12.08.2026
6 überwachte externe Feeds Kein Treffer
Erkennungszeitleiste
-
Domainstatus
Erreichbar → Nicht erreichbar
-
Domainstatus
Erreichbar → Nicht erreichbar
-
Cloudflare Radar
Cloudflare-Radar-Scan gespeichert · Scan öffnen
-
Domainstatus
Erreichbar → Nicht erreichbar
Gespeicherte Aufnahme
Domain-Intelligenz
Technische DetailsDNS, TLS-Namen und Zeitstempel
ICANN OVERSIGHT
Akkreditierung und RAA-Kontext
Akkreditierung und RAA-Kontext
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal-Analyse
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt