सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 18। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@neoncore.biz. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
2 months
Reports sent
1
Latest case ID
PD-20260528-4D9597
Current status
Observed active at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

konto-freigabe[.]de

“PayPal”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
वायरस का कुल पता लगाना: 18/91 URLQuery threat systems: 6 alerts PhishStats feed match ब्रांड प्रतिरूपण: PayPal
OTX: 5 refs 28/05/2026 PayPal 1 Report Sent
रिपोर्ट सारांश

konto-freigabe.de — असत्यापित. ब्रांड प्रतिरूपण: PayPal; घोटाले का प्रकार: Brand Impersonation. साक्ष्य सारांश: VirusTotal 18/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Cluster25, CRDF); URLQuery 6 alerts; PhishStats feed match; CF Radar malicious; PhishDestroy score 95/100.

मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।

साक्ष्य सारांश
आलोचनात्मक
संदर्भ
6E0CF2EB
स्कोर
95/100

This domain, konto-freigabe.de, is identified as a brand impersonation threat targeting PayPal, a widely used online payment platform. Analysis indicates the site is designed to deceive users into entering sensitive credentials, such as login details and financial information, by presenting a fraudulent interface that closely resembles the legitimate PayPal website. The page title explicitly displays "PayPal," reinforcing the attempt to mislead victims into believing they are interacting with an official service. Infrastructure analysis reveals the domain resolves to the IP address 138.226.236.169, hosted under AS205775 (NEON CORE NETWORK LLC) in Germany. At the time of assessment, 18 out of 95 security vendors on VirusTotal flagged the domain as malicious. The domain appears on one security blocklist, and its SSL certificate is issued to an entity associated with automated phishing infrastructure. No specific registrar details or domain creation date were provided, but the technical indicators align with known patterns of credential theft campaigns. The domain is currently offline, reducing immediate risk to users. However, the infrastructure remains a potential threat, as domains of this nature are often reactivated or repurposed for new attacks. Organizations and users are advised to block the domain and its associated IP address at the network level. Monitoring for similar impersonation attempts targeting financial services is recommended, particularly those using SSL certificates tied to known malicious issuers.

VirusTotal
VirusTotal
18 det.
URLQuery
यूआरएलक्वेरी
6 threat alerts
OTX references
सीएफ रडार
दुर्भावनापूर्ण
URLScan
यूआरएलस्कैन
TLS प्रमाणपत्र
Let's Encrypt
आयु
3 mo New
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1
डेटा कवरेज VirusTotal 18 / 91 यूआरएलक्वेरी 6 threat-system alerts फ़िशस्टैट्स feed match · 1 record ओटीएक्स 5 community references सीएफ रडार provider verdict: malicious URLScan capture संग्रहित रिपोर्ट URLScan verdict विश्लेषण पूरा हुआ डीएनएस ब्लॉक जाँच नहीं की गई TLS valid certificate, 89d कौन है 3 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 6 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS konto-freigabe.de malicious Sinkholed
OpenDNS konto-freigabe.de phishing Phishing Block
DigiCert UltraDNS konto-freigabe.de malicious Sinkholed
Hagezi Threat Feed konto-freigabe.de malicious Sinkholed
DNS4EU konto-freigabe.de malicious Sinkholed
CIRA Canadian Shield DNS konto-freigabe.de malicious Sinkholed
CF Cloudflare Radar Verdict दुर्भावनापूर्ण
Security Risks Phishing Phishing Security threats

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
14/15
Sent Report Recorded
Stored sent-report record for domain registrar, hosting provider, 1 abuse contact
abuse@neoncore.biz
28/05/2026

सार्वजनिक ब्लॉकलिस्ट स्थिति

सहेजा गया कैप्चर

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict विश्लेषण पूरा हुआ score 0 report ↗
फ़िशस्टैट्स Feed match 1 record checked 29/05/2026
सर्वर / ASN nginx · AS205775 neoncorenetworks NEON CORE NETWORK LLC, US
IP प्रतिष्ठा abuse score 0/100 0 reports checked 12/08/2026
रजिस्ट्रार अज्ञात
दुरुपयोग संपर्कabuse@neoncore.biz
IP पता 138.226.236.169 DE
भौगोलिक स्थानDE Frankfurt am Main, DE
नेटवर्कAS205775 · NEON CORE NETWORK LLC
रिवर्स IPviewdns.info → rapiddns.io →
पंजीकरणनिर्मित 27/05/2026 (79d · New)
Elapsed Since First Report 2h
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: असत्यापित.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणडीएनएस, एसएसएल एसएएन, टाइमस्टैम्प
पहली बार पता चला28/05/2026
DOM Analysisanalyzed 11/06/2026score 0/100
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://konto-freigabe.de/
नेमसर्वरdns1.registrar-servers.comdns2.registrar-servers.com
TLS Fingerprint
TLS Observationvalid from 08/01/2026scanned 11/06/2026
Case ID
पेज शीर्षक
PayPal
TLS प्रमाणपत्र
Valid transport encryption · जारीकर्ता Let's Encrypt · valid for 89 days
तकनीकें · 4 identified
Plesk
Hosting panels

Plesk is a web hosting and server data centre automation software with a control panel developed for Linux and Windows-based retail hosting service providers.

www.plesk.com 100% विश्वास
Phusion Passenger
Web servers

Phusion Passenger is a free web server and application server with support for Ruby, Python and Node.js.

phusionpassenger.com 100% विश्वास
Nginx
Web servers Reverse proxies

Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.

nginx.org 100% विश्वास
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org 100% विश्वास
Detected via क्लाउडफ्लेयर रडार · Wappalyzer engine
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

18 / 91 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
Cluster25
CRDF
ईएसईटी
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
कास्परस्की
Lionic
नेटक्राफ्ट
SOCRadar
सोफोस
VIPRE
वेबरूट

साक्ष्य और बाहरी रिपोर्टें

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260528-4D9597 Recipient: abuse@neoncore.biz
Page title stored with report: PayPal
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 1.0 KB

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें
HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/konto-freigabe.de"
  title="PhishDestroy threat report for konto-freigabe.de"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>