regeln-und-vereinbarungen[.]com
“Ricardo Benutzerkonto”
regeln-und-vereinbarungen.com — 콘텐츠를 사용할 수 없음 (HTTP 502). 사기 유형: Credential Phishing. 증거 요약: VirusTotal 20/94 (ADMINUSLabs, BitDefender, Cluster25, CRDF, CyRadar); URLQuery 6 alerts; Spamhaus DBL_PHISH; CF Radar malicious; PhishDestroy score 100/100. 등록기관: MAT BAO.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
Analysis of the domain regeln-und-vereinbarungen.com indicates it was actively involved in a credential phishing campaign targeting users of an online marketplace, as suggested by the page title 'Ricardo Benutzerkonto'. The domain was registered on April 12, 2026, through MAT BAO CORPORATION and resolved to the IP address 185.100.157.214, hosted by Partner Hosting LTD in Sweden. Infrastructure analysis reveals the use of Google Cloud nameservers (ns-cloud-e1.googledomains.com, ns-cloud-e2.googledomains.com, ns-cloud-e3.googledomains.com) and an SSL certificate issued by Let's Encrypt (serial number E7), which is common among both legitimate and malicious sites. Detection metrics from security vendors show elevated concern: 20 of 94 engines on VirusTotal flagged the domain as malicious at the time of scanning.
The domain appears on at least one security blocklist, and trust scores from Gridinsoft and Scamadviser both stand at 1/100, further supporting its classification as malicious. Technologies detected on the server include Ubuntu and Apache HTTP Server, which are frequently used in phishing infrastructure due to their widespread availability and configurability. The domain was taken offline following intervention, with PhishDestroy listing it as blocked. While the exact content of the phishing page remains unanalyzed, the combination of the page title, detection counts, and trust scores strongly suggests a credential harvesting operation.
Defenders should treat this domain as high-risk and prioritize blocking it at the DNS and network levels. Organizations should also monitor for related indicators, such as the IP address 185.100.157.214 and the registrar MAT BAO CORPORATION, which may be reused in future campaigns. No evidence links this domain to a specific phishing kit or broader campaign at this time.
네트워크 보안 인텔리전스
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | regeln-und-vereinbarungen.com |
malicious | Sinkholed |
| OpenDNS | regeln-und-vereinbarungen.com |
phishing | Phishing Block |
| DigiCert UltraDNS | regeln-und-vereinbarungen.com |
malicious | Sinkholed |
| DNS4EU | regeln-und-vereinbarungen.com |
malicious | Sinkholed |
| Quad9 DNS | regeln-und-vereinbarungen.com |
malicious | Sinkholed |
| CIRA Canadian Shield DNS | regeln-und-vereinbarungen.com |
malicious | Sinkholed |
위협 대응 Pipeline
공개 차단 목록 상태
저장된 캡처
도메인 인텔리전스
기술적 세부 사항DNS, SSL SAN, 타임스탬프
ICANN OVERSIGHT
인증 및 RAA 상황
인증 및 RAA 상황
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
사용 기술 · 2 identified
Most widely used open-source HTTP server software.
VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of regeln-und-vereinbarungen.com · checked Apr 12, 2026
증거 및 외부 보고서
PD-20260412-B277F8 Recipient: abuse@matbao.com 이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.