kh3a[.]de
“File not found!”
Resumo das evidências
The domain kh3a.de has been identified as a generic phishing threat, meaning it was designed to trick visitors into revealing sensitive information such as passwords, credit card numbers, or personal details. These types of sites often mimic legitimate services like banks, email providers, or social media platforms to steal credentials. The site is now offline, but its past activity could still pose risks to users who interacted with it.
Evidence of the threat is strong. VirusTotal shows that 6 out of 95 security vendors flagged the domain as malicious, a clear indicator of danger. The domain was created on May 19, 2026, which is unusually recent and often a red flag for phishing operations. It uses an SSL certificate from Let's Encrypt (R12), a common choice for both legitimate and malicious sites. The domain resolves to IP 193.34.145.201 and appears in one AlienVault OTX threat intelligence pulse, as well as one security blocklist. PhishDestroy's analysis confirms these findings, noting that the site has been taken offline.
If you visited kh3a.de or entered any information, act quickly. Change the passwords for any accounts you might have used on the site, enable two-factor authentication where possible, and monitor your financial accounts for unauthorized activity. Consider running a security scan on your device to check for malware. Even though the domain is offline, your data could still be at risk if it was captured. Stay vigilant and avoid clicking on unsolicited links in the future.
Data Coverage
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenDNS | kh3a.de |
phishing | Phishing Block |
| Hagezi Threat Feed | kh3a.de |
malicious | Sinkholed |
| DNS4EU | kh3a.de |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Cobertura de listas de bloqueio
10 fontes externas monitoradas · instantâneo de 11/08/2026
10 fontes externas monitoradas Sem correspondência
Inteligência de Domínios
Detalhes técnicosDNS, nomes TLS e datas
Análise do VirusTotal
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo