Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@netcup.de.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
kanzlei-krimhand[.]de
“Русскоязычные адвокаты в Германии | Krimhand Rechtsanwaltkanzlei”
kanzlei-krimhand.de — Non verificato. Tipo di truffa: Credential Phishing. Riepilogo delle prove: VirusTotal 5/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLQuery 1 alert; PhishDestroy score 76/100.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
This domain, kanzlei-krimhand.de, is identified as a potential credential theft threat. It is actively being used to impersonate a legal service by targeting Russian-speaking individuals in Germany. This type of attack aims to collect sensitive personal information from unsuspecting users, which can lead to identity theft and financial loss.
Current analysis shows that the domain is listed on one security blocklist, specifically PhishDestroy, indicating a recognized risk. VirusTotal reports that 1 out of 95 security vendors have flagged this domain as malicious. The domain is registered under a reputable registrar, with an active SSL certificate issued by Let's Encrypt, suggesting that it may employ encryption to give a false sense of security. The domain resolves to an IPv6 address (2a03:4000:30:746c::12:9982) located in Germany, managed by netcup GmbH, which is notable as it can contribute to the trustworthiness perception among users.
Users who have visited kanzlei-krimhand.de should take immediate precautions. It is recommended to change passwords for sensitive accounts and monitor financial statements for any unauthorized transactions. Additionally, users should perform a thorough security scan of their devices to detect potential malware or spyware. Awareness of phishing schemes, especially those targeting specific demographics, is crucial in preventing credential theft and safeguarding personal information.
Informazioni sulla sicurezza di rete
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | kanzlei-krimhand.de |
malicious | Sinkholed |
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Analisi di VirusTotal
Analisi della configurazione del sito
Dati e relazioni esterne
PD-20260617-5BAF4E Recipient: abuse@netcup.de Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo