Notification and current-status evidence
The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
ku2[.]me
“Sign In to Get Started”
Deteksi tersimpan
Peringatan penyamaran
- Jenis penyamaran
content_split- Skor penyamaran
- 1/6
Ringkasan bukti
This domain is flagged as a high-risk credential phishing threat. Registered on February 12, 2025, through GoDaddy, the domain resolves to IP 103.180.114.1, which is hosted on AS16509 (Amazon.com, Inc.) in the United States. The page title, "Sign In to Get Started," is consistent with a generic login page designed to harvest user credentials. Infrastructure analysis shows the site uses Cloudflare nameservers (donovan.ns.cloudflare.com and norah.ns.cloudflare.com) and is built on Vercel, with HSTS enabled. The SSL certificate is identified as YE1. External intelligence sources provide strong evidence of malicious activity: AlienVault OTX lists the domain in one threat intelligence pulse, VirusTotal reports 17 of 91 security vendors flagging it as malicious, and it appears on one security blocklist. The Gridinsoft trust score is 0 out of 100, indicating no trustworthiness. The PhishDestroy blocklist has also flagged this domain. The site is currently live (HTTP status 200) and remains active as of July 12, 2026. The exact brand targeted by this phishing campaign is not specified in the available data; however, the generic sign-in page suggests it may target multiple services or a broad user base. Defenders should block access to this domain and its associated IP address at the network level, monitor for any associated subdomains or similar registrations, and add indicators of compromise to threat intelligence platforms. Users encountering this page should not enter any credentials and report the domain to their security team.
Snapshot bukti yang dikirim
- Dikirim
- Catatan buku besar
- 1
- ID kasus
PD-20260629-A97DF6- Judul halaman yang direkam
- Problem loading page
- Artefak PDF
- Bukti PDF
Dasar hukum
Teks bukti lengkap
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
Data Coverage
Alur Tanggapan Ancaman Pipeline
Cakupan daftar blokir
10 sumber eksternal dipantau · snapshot tersimpan 10/08/2026
Teknologi
3 teknologi dengan keyakinan tinggi teridentifikasi
Analisis VirusTotal
Analisis Performa Situs
Google PageSpeed Insights — mobile performance audit of ku2.me · checked Jun 29, 2026
Apakah Anda Terpengaruh oleh Situs Ini?
Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.
Laporkan kepada Pihak Berwenang di Daerah Anda
Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.
Periksa Domain Apa Pun
Analisis ancaman menggunakan daftar blokir yang disimpan, WHOIS, DNS, dan bukti pemindaian publik
Pindai SekarangLaporkan Phishing
Laporkan domain yang mencurigakan ke basis data ancaman kami — lindungi komunitas
LaporanPemberitahuan Ancaman Real-Time
Laporan phishing terbaru dan perubahan ketersediaan yang diamati
PantauTetap Terinformasi, Tetap Aman
Pantau ancaman secara langsung atau ajukan keberatan terhadap daftar ini jika Anda yakin ini merupakan false positive