MALICIOUS — CRITICAL
Is dieschweizerpost.com a Credential Theft Scam Targeting Swiss
dieschweizerpost[.]
This domain, dieschweizerpost.com, is flagged as a credential theft operation impersonating Swiss Post, a legitimate postal service provider.
- VirusTotal
- 16/91
- Blocklists
- 2 · MetaMask, SEAL
- Disponibilità
- Contenuto non disponibile · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
dieschweizerpost.com — Contenuto non disponibile (HTTP 502). Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Registrar: Hosting Concepts.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
Evidence Analysis
This domain, dieschweizerpost.com, is flagged as a credential theft operation impersonating Swiss Post, a legitimate postal service provider. Analysis indicates the site employs deceptive login interfaces to harvest user credentials, likely targeting customers expecting official communications. No direct association with known crypto drainer kits has been confirmed, but the infrastructure aligns with credential harvesting campaigns observed in recent months. Infrastructure analysis reveals the domain was registered on May 20, 2026, through Hosting Concepts B.V. d/b/a Registrar.eu, an uncommon future date suggesting potential domain spoofing or registry manipulation. It resolves to IP address 144.172.99.237, hosted by FranTech Solutions in the United States. The domain is detected by 16 out of 95 security vendors on VirusTotal, with a page title of 'Accès refusé,' which may indicate restricted access or cloaking techniques. It appears on three security blocklists and is actively blocked by multiple threat intelligence feeds. As of the latest assessment, dieschweizerpost.com remains active and operational, posing a persistent risk to unsuspecting users. The SSL certificate, issued by Let's Encrypt (serial number E7), provides encryption but does not validate legitimacy. Organizations and individuals are advised to block the domain at the network level and monitor for related indicators of compromise. Users should verify sender authenticity before interacting with any communications claiming affiliation with Swiss Post, particularly those directing to unfamiliar domains.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
Copertura dei dati12 recorded checks
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ICANN OVERSIGHT
Accreditamento e contesto RAA
Accreditamento e contesto RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Analisi di VirusTotal
Dati e relazioni esterneIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.