www1[.]inputecho[.]co
“Get the Funding YouNeed – Fast”
www1.inputecho.co — Nicht bestätigt. Betrugstyp: Generic Phishing. Zusammenfassung der Beweislage: VirusTotal 1/91 (Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 66/100. Registrar: Porkbun.
Die ausführliche Analyse von PhishDestroy AI bleibt auf Englisch, damit der ursprüngliche forensische Bericht unverändert bleibt.
The domain www1.inputecho.co was registered on March 10, 2026 through Porkbun LLC. It is currently active and classified as a high‑risk generic phishing site. The public page presents a title “Get the Funding YouNeed – Fast”, which is typical of fraudulent financing offers used to harvest credentials.
Infrastructure analysis shows the domain resolves to the IP address 44.230.85.241, which is hosted in the United States under ASN 16509 belonging to Amazon.com, Inc. The authoritative nameservers are curitiba.ns.porkbun.com, fortaleza.ns.porkbun.com, maceio.ns.porkbun.com, and salvador.ns.porkbun.com. The site presents a valid Let’s Encrypt certificate (R12) and returns an HTTP 301 redirect before delivering the content. Technical fingerprinting identifies a WordPress core with MySQL, PHP, Yoast SEO, Swiper, jQuery, and jQuery Migrate, indicating a standard content‑management platform deployed on Amazon Web Services.
Threat intelligence assigns a Gridinsoft trust score of 0 out of 100, reflecting extreme maliciousness. VirusTotal reports a single positive detection out of 95 scanned security vendors, and the domain appears on three public blocklists: PhishDestroy, MetaMask, and SEAL. These indicators, combined with the high‑risk rating and the phishing classification, confirm that the site is being used to lure victims into providing personal or financial information.
Defenders should immediately block www1.inputecho.co at perimeter firewalls, DNS resolvers, and proxy filters. Continuous monitoring of the associated IP 44.230.85.241 is advised to detect any pivoting activity. Security teams should update phishing detection signatures to include the observed page title and WordPress fingerprint. End‑user awareness campaigns should warn users about unsolicited funding offers that redirect to this domain.
Pipeline zur Reaktion auf Sicherheitsbedrohungen
Status der öffentlichen Sperrliste
Technologien · 12 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Cloud computing platform offering compute, storage, and networking services.
Modern mobile touch slider with hardware-accelerated transitions.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Third major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal-Analyse
Website-Performanceanalyse
Google PageSpeed Insights — mobile performance audit of www1.inputecho.co · checked Mar 10, 2026
Analyse der Website-Konfiguration
Nachweise und externe Berichte
Wurden Sie von dieser Website betroffen?
Wenn Sie Kontoanmeldeinformationen, persönliche oder Zahlungsinformationen eingegeben oder eine Datei von dieser Domain heruntergeladen haben, ergreifen Sie sofort Maßnahmen. Nachfolgend finden Sie Ressourcen, die Ihnen helfen, den Vorfall zu melden und sich zu schützen.
Melden Sie sich bei Ihren örtlichen Behörden
Wählen Sie Ihr Land aus, um Offizielle Kontakte im Bereich Cyberkriminalität oder einen Beschwerdeentwurf erstellen → zu erhalten.
Jede beliebige Domain prüfen
Bedrohungsanalyse anhand gespeicherter Blocklisten, WHOIS, DNS und öffentlicher Scan-Beweise
Jetzt scannenPhishing melden
Melden Sie verdächtige Domains an unsere Bedrohungsdatenbank – schützen Sie die Community
MeldenEchtzeit-Bedrohungsfeed
Aktuelle Phishing-Meldungen und beobachtete Verfügbarkeitsänderungen
ÜberwachenBleiben Sie auf dem Laufenden, bleiben Sie sicher
Beobachten Sie aktuelle Bedrohungen oder legen Sie Widerspruch gegen diesen Eintrag ein, wenn Sie der Meinung sind, dass es sich um einen Fehlalarm handelt