Lompat ke laporan keamanan
Checked 09/08/2026 Ref 9AE5E2D7

MALICIOUS — CRITICAL

Pemeriksaan phishing dan keamanan kfcu.at

kfcu[.]at

Analysis of the domain kfcu.at indicates active phishing infrastructure targeting Keesler Federal Credit Union, as evidenced by its page title 'Keesler Federal Credit.

100/100 evidence score · Critical
VirusTotal
17/91
Blocklists
2 · MetaMask, SEAL
Ketersediaan
Terakhir diketahui aktif · HTTP 200
2026-06-10 18:16 UTCTerakhir diketahui aktif · HTTP 200

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 17. Daftar blokir publik yang melaporkan kecocokan: 2. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
Jump to section
Ringkasan laporan

kfcu.at — Terakhir diketahui aktif (HTTP 200). Jenis penipuan: Brand Impersonation. Ringkasan bukti: VirusTotal 17/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, CyRadar); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100.

Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.

Evidence Analysis

Ref 9AE5E2D7

Analysis of the domain kfcu.at indicates active phishing infrastructure targeting Keesler Federal Credit Union, as evidenced by its page title 'Keesler Federal Credit Union — Official Keesler Federal Credit Union Site.' The domain resolves to IP address 45.59.122.205, hosted in Switzerland, and is protected by Cloudflare, which may obscure further origin details. As of July 12, 2026, the site returns an HTTP 200 status, confirming operational availability. Security vendors have flagged this domain, with 14 of 91 engines on VirusTotal detecting malicious activity, and it appears on three blocklists, including PhishDestroy, MetaMask, and SEAL. AlienVault OTX records two threat intelligence pulses associated with this domain, reinforcing its classification as a brand impersonation threat. The SSL certificate is issued by Let's Encrypt, a common choice for both legitimate and malicious sites, and the domain employs HSTS, which may be used to lend false credibility. Defenders should treat this domain as high-risk and prioritize blocking or monitoring access to it. While the exact content and functionality of the site remain unanalyzed, the available indicators align with typical phishing behavior targeting financial institutions. Further investigation into associated infrastructure and registration details may provide additional context, though current data suggests an active and ongoing threat.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
17 det.
OTX references
Sertifikat TLS
Let's Encrypt
Status terpantau
Terakhir diketahui aktif 200
PhishDestroy
Daftar Hapus
Terdaftar
Cakupan data12 recorded checks
VirusTotal 17 / 91 URLQuery tidak diperiksa PhishStats tidak diperiksa OTX 2 community references CF Radar scan completed URLScan capture capture unavailable URLScan verdict putusan tidak tersedia Pemblokiran DNS 14 diperiksa — tidak ada blokir TLS valid certificate, 63d WHOIS not parsed Tangkapan layar tangkapan eksternal Rantai pengalihan tidak diselidiki

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
13/15
Ancaman Telah Diterima
kfcu.at telah terdeteksi dan dimasukkan ke dalam antrian untuk analisis menyeluruh
10/06/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
17/91 recorded on VirusTotal
28/07/2026
Google Safe Browsing
26/06/2026
Deteksi Daftar Blokir
Ditemukan di 2 blocklists: MetaMask, SEAL
09/08/2026
OTX Community References
2 community publication references on AlienVault OTX. References are not vendor verdicts and are excluded from the evidence score.
11/06/2026
Forensic Evidence Collected
Stored evidence from stored screenshot
10/06/2026
Technical Analysis Recorded
Laporan tersebut berisi teknologi tersimpan atau hasil analisis forensik.
09/08/2026
Content Observed Unavailable
Pemantauan mencatat respons yang tidak tersedia (HTTP 502); penyebabnya belum diketahui secara independen.
09/08/2026
Site Came Back Online
Domain is responding again — monitoring resumed
07/08/2026
Content Observed Unavailable
Pemantauan mencatat respons yang tidak tersedia (HTTP 502); penyebabnya belum diketahui secara independen.
06/08/2026
VT detections increased by 10
+10 new detections (4 → 14): BitDefender, CRDF, Chong Lua Dao, CyRadar +6
26/06/2026
Complaint Draft Available
Tidak ada penyerahan yang dicatat. Anda dapat membuat draf, meninjaunya, dan menyerahkannya sendiri ke otoritas yang sesuai.
Daftar yang Dihapus Telah Dipublikasikan
10/06/2026
Monitoring Continues
Domain tetap dapat dijangkau atau aksesnya dibatasi; pemeriksaan di masa depan dapat memperbarui pengamatan ini.

Status Daftar Blokir Publik

Tangkapan tersimpan

Intelijen Domain

Domain
Server / ASN nginx · AS14956 RouterHosting LLC
Reputasi IP abuse score 0/100 0 reports checked 13/07/2026
Alamat IP 45.59.122.205 CH
LokasiCH Bern, CH
JaringanAS14956 · anyNode
Elapsed Since First Report 6 days
Yang kami hitung Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Terakhir diketahui aktif.
Isi setiap laporan Catatan laporan keluar yang disimpan dapat merujuk pada bukti yang tersedia pada saat itu, seperti keputusan vendor, data pendaftaran, detail hosting, klasifikasi, atau tangkapan layar. Halaman ini tidak menyimpulkan secara pasti muatan yang dikirimkan, penerimaan, pengakuan, atau tindakan oleh penerima.
Status HTTP200
Rincian teknisDNS, SAN SSL, cap waktu
Pertama Kali Terdeteksi10/06/2026
Submitted URLhttp://kfcu.at/
TLS Fingerprint
TLS Observationvalid from 30/05/2026scanned 13/06/2026
Favicon Hash
Judul Halaman
Keesler Federal Credit Union — Official Keesler Federal Credit Union Site
Sertifikat TLS
Valid transport encryption · Diterbitkan oleh Let's Encrypt · valid for 63 days
Teknologi · 5 identified
PHP
Programming languages

PHP is a general-purpose scripting language used for web development.

php.net Keyakinan 100%
HSTS
Keamanan

HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.

www.rfc-editor.org Keyakinan 100%
Cloudflare Browser Insights
Analytics RUM

Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.

www.cloudflare.com Keyakinan 100%
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com Keyakinan 100%
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org Keyakinan 100%
Detected via Cloudflare Radar · Wappalyzer engine
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

17 / Vendor keamanan 91 menandai domain ini
View on VT
Last analyzed Previous stored snapshot: 14 detections
alphaMountain.ai
BitDefender
Chong Lua Dao
CRDF
CyRadar
ESET
Emsisoft
Fortinet
G-Data
Gridinsoft
Kaspersky
Lionic
Netcraft
SOCRadar
Sophos
VIPRE
Webroot
Analisis Performa Situs

Google PageSpeed Insights — mobile performance audit of kfcu.at · checked Jun 26, 2026

97
Good
Performance
FCP
1.54s
First Contentful Paint
LCP
1.54s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
4.63s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri
Sematkan Laporan IniRead-only HTML widget
HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/kfcu.at"
  title="PhishDestroy threat report for kfcu.at"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>