सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 8। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
डोमेन सुरक्षा और ख़तरे की आसूचना

kalaoffice[.]com

“کالا آفیس فروشگاه اینترنتی مبلمان اداری”

धमकी भरा फैसला गंभीर 78/100 साक्ष्य स्कोर
उपलब्धता सामग्री अनुपलब्ध नवीनतम अवलोकन में सामग्री अनुपलब्ध थी
वायरस का कुल पता लगाना: 8/94 URLQuery threat systems: 2 alerts ब्रांड प्रतिरूपण: Sfexpress
01/04/2026 Sfexpress 1 Report Sent

साक्ष्य सारांश

आलोचनात्मक
Evidence score
78/100

PhishDestroy identifies kalaoffice.com as a malicious domain actively leveraging a generic phishing campaign, specifically designed as a cryptocurrency drainer. This domain poses as a legitimate service, likely targeting unsuspecting users under the guise of a professional or business-related portal. While the exact brand impersonation remains unspecified in current intelligence, the domain’s infrastructure and operational patterns strongly suggest an attempt to harvest credentials or initiate unauthorized crypto transactions. The malicious activity aligns with observed tactics in modern phishing campaigns, where attackers exploit perceived legitimacy to deceive victims into interacting with fraudulent login portals or payment gateways.

Technical analysis of kalaoffice.com reveals several red flags that warrant immediate caution. The domain, registered on May 06, 2023 through CSL Computer Service Langenbach GmbH d/b/a joker.com, resolves to the IP address 193.36.85.51 and utilizes a Let’s Encrypt SSL certificate to appear trustworthy. VirusTotal’s detection rate stands at a concerning 3 out of 95 security vendors, indicating low awareness among automated defense systems. Additionally, this domain has not been flagged by Google Safe Browsing (GSB), and while specific blocklist counts are unverified, its recent creation date and minimal detection suggest it may evade traditional security measures. The combination of a fresh domain, low detection score, and reliance on a reputable certificate authority underscores the sophistication of this threat.

As of the latest assessment, kalaoffice.com remains in an active state, with no confirmed takedown or mitigation by hosting providers or registrars. PhishDestroy advises users to exercise extreme caution when accessing this domain or any associated links, as the risk of credential theft or financial loss is elevated. Immediate actions include blocking the domain at the network perimeter, updating endpoint detection rules to flag this indicator, and disseminating user awareness alerts to prevent engagement. While the current risk level is elevated, proactive containment measures can significantly reduce exposure. Remaining risk is moderate due to the domain’s recent activity and low initial detection rates, necessitating ongoing monitoring for shifts in behavior or infrastructure changes.

भेजे गए प्रमाण का स्नैपशॉट

भेजा गया
लेज़र रिकॉर्ड
1
केस आईडी
PD-20260401-F710AC
कैप्चर किए गए पेज का शीर्षक
Track & Trace | Service&Support | SF
PDF दस्तावेज़
PDF प्रमाण
प्रमाण का पूरा पाठ
Policy Violations:
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (DK):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and DK's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
VirusTotal
VirusTotal
8 det.
URLQuery
यूआरएलक्वेरी
2 threat alerts
DNS Security
4/12
TLS प्रमाणपत्र
Let's Encrypt
आयु
4 mo
देखी गई स्थिति
सामग्री अनुपलब्ध HTTP 502
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1

Data Coverage

VirusTotal 8 / 94 यूआरएलक्वेरी 2 threat-system alerts फ़िशस्टैट्स checked — no match recorded ओटीएक्स no community references सीएफ रडार scan completed URLScan capture संग्रहित रिपोर्ट URLScan verdict malicious डीएनएस ब्लॉक 4/12 TLS valid certificate, 37d कौन है 4 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
DNS Provider Blocks 4 / 12
Controld Adblock Controld Family Controld Malware Quad9 Secure
Threat Detection Systems 2 alerts
Detection System Indicator Verdict Alert
DNS4EU kalaoffice.com malicious Sinkholed
Quad9 DNS kalaoffice.com malicious Sinkholed

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
14/14

ब्लॉकलिस्ट कवरेज

10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 12/08/2026

10 निगरानी वाले बाहरी स्रोत कोई मिलान नहीं

सहेजा गया कैप्चर

पेज शीर्षक
کالا آفیس فروشگاه اینترنتی مبلمان اداری
Impersonates
Jito
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Let's Encrypt · valid for 37 days

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict दुर्भावनापूर्ण score 100 Phishing brand: Sfexpress report ↗
सर्वर / ASN LiteSpeed · AS212552 BitCommand LLC
IP प्रतिष्ठा IP abuse confidence 0/100 0 reports checked 14/07/2026
रजिस्ट्रार CSL Computer Service L… DK(DK)
दुरुपयोग संपर्कabuse@joker.com
IP पता 193.36.85.51 DE
भौगोलिक स्थानDE Frankfurt am Main, DE
नेटवर्कAS212552 · BitCommand LLC
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 01/04/2026 (132d)
HTTP स्थिति502 Error
पहली अनुपलब्धता तक का समय 6 days
हम क्या मापते हैं पहली संग्रहीत दुरुपयोग रिपोर्ट से लेकर पहली बार अवलोकन तक कि सामग्री अनुपलब्ध थी, बीता हुआ समय। इससे कारण स्थापित नहीं होता.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
पहली बार पता चला01/04/2026
DOM Analysisanalyzed 29/07/2026DOM analysis score 63/1001 brand signal
Submitted URLhttp://kalaoffice.com/wp-content/uploads/e1mkgwi/nhewrzb/gvfqsnr/content/rebrandedchina/index.php?… query redacted
नेमसर्वरns4.parspack.co
TLS फिंगरप्रिंट
TLS अवलोकन07/02/2026 से मान्य01/04/2026 को स्कैन किया गया
TLS सब्जेक्ट वैकल्पिक नामautodiscover.kalaoffice.comcpanel.kalaoffice.comcpcalendars.kalaoffice.comcpcontacts.kalaoffice.commail.kalaoffice.comwebdisk.kalaoffice.comwebmail.kalaoffice.comwww.kalaoffice.com
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

8 / 94 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
अब्यूसिक्स
ADMINUSLabs
alphaMountain.ai
Cluster25
CRDF
Fortinet
Gridinsoft
SOCRadar
साइट प्रदर्शन विश्लेषण

Google PageSpeed Insights — mobile performance audit of kalaoffice.com · checked Apr 1, 2026

64
Needs Work
Performance
FCP
4.1s
First Contentful Paint
LCP
9s
Largest Contentful Paint
CLS
0.011
Cumulative Layout Shift
TBT
45ms
Total Blocking Time
SI
4.94s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें

बाहरी उपकरण

HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/kalaoffice.com"
  title="PhishDestroy threat report for kalaoffice.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।