MALICIOUS — CRITICAL
Phishing- und Sicherheitsprüfung für solbot1.cc
solbot1[.]
Analysis of solbot1.cc shows a newly registered domain (creation date 21 May 2026) that is actively serving HTTP content (status 200) behind Cloudflare infrastructure (IP 104.21.87.204, CA location).
- VirusTotal
- 9/91
- Blocklists
- 1 · ScamSniffer
- Verfügbarkeit
- Letzter bekanntermaßen aktiv · HTTP 200
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
solbot1.cc — Letzter bekanntermaßen aktiv (HTTP 200). Zusammenfassung der Beweislage: VirusTotal 9/91 (alphaMountain.ai, BitDefender, CRDF, Forcepoint ThreatSeeker, Fortinet); 1 external blocklist match (ScamSniffer); PhishDestroy score 87/100. Registrar: Gname.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
Evidence Analysis
Analysis of solbot1.cc shows a newly registered domain (creation date 21 May 2026) that is actively serving HTTP content (status 200) behind Cloudflare infrastructure (IP 104.21.87.204, CA location). The domain uses a Let's Encrypt certificate (E8) and is delegated to Cloudflare nameservers gigi.ns.cloudflare.com and matt.ns.cloudflare.com. Reputation data is poor: Gridinsoft assigns a trust score of 0/100, the domain appears on two security blocklists, and it has been flagged by the PhishDestroy and ScamSniffer blocklists. AlienVault OTX lists the domain in one threat pulse, and VirusTotal reports three detections out of 91 scanned vendors. Registration was performed through Gname.com Pte. Ltd., a registrar often associated with disposable or low‑cost registrations. The combination of a fresh registration, zero trust score, multiple blocklist listings, and positive detections on VirusTotal aligns with the high‑risk generic phishing classification. Uncertainty remains regarding the specific payload or victim targeting, as no page content or phishing kit details are available. Defenders should block or sinkhole the domain at the network perimeter, monitor DNS queries for the associated IP and nameservers, and include the domain in threat‑intel feeds. Continuous re‑scanning on VirusTotal or similar services is advised to capture any evolving indicators.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Datenabdeckung12 recorded checks
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Domain-Intelligenz
Technische DetailsDNS, SSL-SANs, Zeitstempel
VirusTotal-Analyse
Analyse der Website-Konfiguration
Nachweise und externe BerichteIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.