k-fin[.]cc
“Log In”
साक्ष्य सारांश
This domain, k-fin.cc, is actively flagged as a high-risk credential phishing site. Registered on May 20, 2026, through NameSilo, LLC, it remains operational as of July 12, 2026. The page title 'Log In' suggests a focus on harvesting user credentials, though the specific brand or service being impersonated is not confirmed in available data. Infrastructure analysis reveals the domain resolves to 172.67.136.27 and employs Cloudflare for hosting and security, including HSTS and HTTP/3 protocols. The SSL certificate is issued by Google Trust Services, a common but not inherently malicious provider. Security vendors have detected malicious activity, with 15 of 95 engines flagging the domain on VirusTotal. It appears on four security blocklists and has been referenced in 16 threat intelligence pulses on AlienVault OTX, indicating broader recognition of its malicious nature. Defensive tools such as SEAL, MetaMask, PhishDestroy, and BLP-Malware have already blocked access to this domain, and Gridinsoft assigns it a trust score of 0/100. Defenders should treat this domain as confirmed malicious. Immediate actions include blocking the domain and its resolving IP at the network perimeter, monitoring for connections to 172.67.136.27, and reviewing logs for any prior interactions. While the exact phishing kit or targeted brand is not identified, the presence of a login page and widespread detection warrant proactive containment. Further analysis of endpoint or proxy logs may reveal additional indicators of compromise linked to this campaign.
Data Coverage
नेटवर्क सुरक्षा इंटेलिजेंस
धमकी प्रतिक्रिया पाइपलाइन
ब्लॉकलिस्ट कवरेज
10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026
पहचान समयरेखा
-
VirusTotal
13 → 0
-
VirusTotal
14 → 15
तकनीकें
4 उच्च-विश्वसनीयता वाली तकनीकें पहचानी गईं
वायरसटोटल विश्लेषण
क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।