impressengineering[.]co[.]ke
“Home - Impress Engineering”
साक्ष्य सारांश
The domain impressengineering.co.ke is currently active and resolves to the IPv4 address 46.165.235.143, which is advertised as part of AS28753 Leaseweb Deutschland GmbH located in Germany. The site returns HTTP 200 and presents a page title of “Home - Impress Engineering”. Technical fingerprinting reveals a WordPress stack backed by MySQL and PHP, served through LiteSpeed, and includes front‑end libraries such as Swiper, jQuery, jQuery Migrate and Font Awesome. The domain was registered on 8 November 2023 through HostPinnacle Cloud Limited and uses a Let’s Encrypt R12 certificate, indicating that TLS is properly configured.
VirusTotal records show that two of ninety‑three scanning engines have flagged the domain, and the domain is listed on two public blocklists, specifically PhishDestroy and ScamSniffer. Both blocklists classify the activity as banking phishing, which aligns with the supplied scam type label. Nameservers rs51‑rs54.rcnoc.com are associated with the same hosting provider. No additional intelligence on the page content or the specific credential‑harvesting mechanism is presently available, so the exact phishing lure remains unconfirmed.
However, the combination of a recent registration, active hosting, a valid TLS certificate, and detection by multiple security vendors and blocklists strongly suggests a malicious intent aimed at credential theft. Defensive teams should continue to block the domain at network perimeters, add the IP address 46.165.235.143 to deny‑list rules, and monitor DNS queries for the associated nameservers. Organizations that process banking credentials should treat any communications from this domain as hostile and educate users to avoid interacting with the site. Continuous re‑scanning on VirusTotal and inclusion in threat‑intel feeds are recommended to capture any future changes in the payload or hosting infrastructure.
Data Coverage
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 11/08/2026
पहचान समयरेखा
-
डोमेन स्थिति
पहुँच योग्य → पहुँच योग्य नहीं
-
Cloudflare Radar
Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।