whiskymuseum[.]at
“Whiskey - Angebote günstig in Aktion kaufen”
whiskymuseum.at — Encoberto · alcançável (HTTP 200). Tipo de golpe: Generic Phishing. Resumo das evidências: VirusTotal 10/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, ESET, Forcepoint ThreatSeeker); URLQuery 1 alert; 1 external blocklist match (CryptoFirewall); cloaking observed; PhishDestroy score 100/100.
A análise detalhada do PhishDestroy AI permanece em inglês para preservar o registro forense original.
This domain, whiskymuseum.at, is flagged as a generic phishing site targeting consumers seeking discounted whiskey products. Analysis indicates the site mimics legitimate retail promotions, likely to harvest payment card details or distribute malware under the guise of limited-time offers. No specific brand impersonation is confirmed, but the page title 'Whiskey - Angebote günstig in Aktion kaufen' suggests a broad targeting of German-speaking users with fraudulent e-commerce tactics. The absence of a known drainer kit signature does not preclude the use of custom or obfuscated skimming scripts. Infrastructure analysis reveals multiple high-confidence technical indicators. The domain resolves to IP 78.46.146.14, hosted on AS24940 (Hetzner Online GmbH) in Germany, a common provider for both legitimate and malicious operations. VirusTotal detection shows 12 of 95 security vendors flagging the domain, with a creation date of February 21, 2026, indicating a likely typo-squatted or lookalike registration. The domain appears on two security blocklists, including PhishDestroy and CryptoFirewall, and employs a Let's Encrypt SSL certificate (serial E7) to feign legitimacy. No Google Safe Browsing (GSB) listing is noted, though this may reflect a lag in propagation. Current status shows the domain as offline, likely due to takedown actions or voluntary suspension by the hosting provider. While the immediate threat is mitigated, residual risk persists for users who may have interacted with the site prior to deactivation. Historical DNS records or cached pages could still expose victims to follow-up attacks, such as credential stuffing or secondary phishing campaigns. Users are advised to verify transaction histories, revoke compromised payment details, and monitor for unauthorized activity. Organizations should update blocklists to include the domain and IP, while security teams may investigate related infrastructure for coordinated threats.
Inteligência de segurança de rede
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | whiskymuseum.at |
malicious | Sinkholed |
Pipeline de resposta a ameaças
Status da lista de bloqueios pública
Tecnologias · 6 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% de confiançaApache is a free and open-source cross-platform web server software.
httpd.apache.org 100% de confiançaQuery Migrate is a javascript library that allows you to preserve the compatibility of your jQuery code developed for versions of jQuery older than 1.9.
github.com 100% de confiançajQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 100% de confiançaAnálise do VirusTotal
Evidências arquivadas
Análise de desempenho do site
Google PageSpeed Insights — mobile performance audit of whiskymuseum.at · checked Mar 2, 2026
Evidências e relatórios externos
Você foi afetado por este site?
Se você inseriu credenciais de conta, informações pessoais ou de pagamento, ou baixou um arquivo deste domínio, tome medidas imediatas. Abaixo estão os recursos para ajudá-lo a relatar o incidente e se proteger.
Notifique as autoridades locais
Selecione seu país para obter contactos oficiais do cibercrime ou crie um rascunho de reclamação →.
Verificar qualquer domínio
Análise de ameaças usando lista de bloqueio armazenada, WHOIS, DNS e evidências de verificação pública
Digitalize agoraDenunciar phishing
Envie domínios suspeitos para nosso banco de dados de ameaças — proteja a comunidade
DenunciarFeed de ameaças em tempo real
Relatórios recentes de phishing e alterações de disponibilidade observadas
MonitorarMantenha-se informado, mantenha-se seguro
Monitore ameaças em tempo real ou conteste esta listagem caso acredite que se trate de um falso positivo