kes[.]com
kes.com のフィッシング・安全性チェック
“KES, Inc. - An Employee Owned Company”
kes.com — 最後に確認されたアクティブな状態 (HTTP 301). 証拠の概要: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishStats feed match (5); PhishDestroy score 71/100. レジストラ: Network Solutions.
元のフォレンジック記録を保持するため、下の PhishDestroy AI 詳細分析は英語のままです。
kes.com has been identified as an active credential harvesting scam, posing a high risk to unsuspecting users. The domain, registered on August 03, 1995, through Network Solutions, LLC, resolves to IP 198.185.159.144 and uses a Let's Encrypt SSL certificate. As of the latest analysis, the domain remains undetected on VirusTotal with 0/95 detections, indicating it has evaded initial detection mechanisms. No current blocklist entries or trust score degradations have been recorded, further highlighting the stealthy nature of this campaign. PhishDestroy identifies this as a critical threat due to its credential harvesting intent. The domain's age and legitimate-looking registration details lend it an air of trustworthiness, which threat actors exploit to deceive users. The lack of detections on VirusTotal suggests the campaign is still in a low-profile, active phase, targeting users who may lower their guard due to the domain's longevity. Technical indicators, including the IP resolution and SSL certificate, do not yet flag the domain as malicious, reinforcing the need for proactive user vigilance. To mitigate risk, users must avoid interacting with kes.com entirely. Organizations should block this domain and IP at the network perimeter via DNS filtering or firewall rules. Employees should be educated on the risks of credential harvesting and trained to verify URLs before inputting sensitive information. Security teams are advised to monitor for any new domain variants or IP shifts and report findings to threat intelligence platforms to improve detection coverage. Immediate reporting of this domain to relevant authorities, such as the Anti-Phishing Working Group (APWG), can also help disrupt the campaign.
脅威対応 Pipeline
公開ブロックリスト登録状況
保存済みキャプチャ
ドメイン・インテリジェンス
技術的な詳細DNS、SSL SAN、タイムスタンプ
ICANN OVERSIGHT
認定と RAA の背景
認定と RAA の背景
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
使用技術 · 8 identified
Website builder and hosting platform.
Website builder and hosting platform.
Adobe Fonts web-font service (formerly Typekit).
Legacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
HTTP Strict Transport Security — forces browsers to use HTTPS connections only.
Web analytics service tracking website traffic and user behavior.
marketingplatform.google.comVirusTotalによる分析
サイトパフォーマンス分析
Google PageSpeed Insights — mobile performance audit of kes.com · checked Apr 19, 2026
証拠および外部報告書
このサイトによって何か影響を受けましたか?
アカウント資格情報、個人情報、支払い情報を入力した場合、またはこのドメインからファイルをダウンロードした場合は、すぐに対処してください。インシデントを報告し、自分自身を守るのに役立つリソースを以下に示します。
お住まいの地域の当局へ報告してください
サイバー犯罪の公式連絡先 または 苦情草稿を作成する → を取得するには、国を選択してください。
任意のドメインを確認する
保存されたブロックリスト、WHOIS、DNS、および公開スキャン証拠を使用した脅威分析
今すぐスキャンフィッシングを報告する
不審なドメインを当社の脅威データベースに報告してください — コミュニティを守りましょう
レポートリアルタイム脅威情報フィード
最近のフィッシングレポートと観察された可用性の変化
監視最新情報を入手し、安全を確保しましょう
リアルタイムの脅威を監視するか、誤検知だと思われる場合はこのリストに異議を申し立ててください