belastingdienst[.]website
“Nur einen Moment…”
Evidence Summary
The domain belastingdienst.website is a generic phishing site designed to deceive users into disclosing sensitive information. It does not impersonate a specific brand or deploy a known crypto drainer kit. As of the latest verification, belastingdienst.website has been taken offline, though it previously posed an elevated risk of credential theft or other fraudulent activity.
Technical indicators confirm the domain's malicious nature. belastingdienst.website was flagged by 3 of 95 VirusTotal security vendors, including CRDF, Gridinsoft, and SOCRadar. It appears on one security blocklist (PhishDestroy) and was registered through NameSilo, LLC on October 10, 2025. The domain resolved to the IP address 188.114.96.3, hosted by Cloudflare, Inc. (AS13335) in the US, with no SSL certificate issued. The observed page title was 'Nur einen Moment…', and it was detected in one AlienVault OTX threat intelligence pulse. Nameservers were lynn.ns.cloudflare.com and walk.ns.cloudflare.com.
Users who may have interacted with belastingdienst.website should immediately change any exposed credentials, enable two-factor authentication (2FA) on affected accounts, and monitor for unauthorized activity. Report the domain to platforms like Google Safe Browsing, PhishTank, or local cybersecurity authorities to aid in takedown efforts. If financial or crypto accounts were accessed, revoke token approvals and transfer funds to a new, secure wallet.
Data Coverage
Network Security Intelligence
Threat Response Pipeline
Blocklist coverage
10 monitored external feeds · stored snapshot Aug 12, 2026
10 monitored external feeds No match
Detection timeline
-
Cloudflare Radar
Cloudflare Radar scan stored · Open scan
Stored Capture
Domain Intelligence
Technical detailsDNS, TLS names and timestamps
ICANN OVERSIGHT
Accreditation and RAA context
Accreditation and RAA context
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Forensic Intelligence
VirusTotal Analysis
Were You Affected by This Site?
If credentials, payment data, or files were exposed, report the incident immediately. Change affected passwords, revoke active sessions, and scan the device.
Report to Your Local Authorities
Select your country to get official cybercrime contacts, or create a complaint draft →.
Check Any Domain
Threat analysis using stored blocklist, WHOIS, DNS, and public scan evidence
Scan NowReport Phishing
Submit suspicious domains to our threat database — protect the community
ReportLive Threat Feed
Recent phishing reports and observed availability changes
MonitorStay Informed, Stay Safe
Monitor live threats or contest this listing if you believe it's a false positive