dao-keeta[.]com
“Suspected Phishing | Cloudflare”
Сводка доказательств
This domain is flagged at an elevated risk level for generic phishing activity, specifically credential harvesting. Analysis indicates dao-keeta.com is designed to mimic legitimate services, tricking users into submitting sensitive login details such as usernames, passwords, or multi-factor authentication codes. The infrastructure is engineered to exfiltrate captured data to attacker-controlled endpoints, enabling unauthorized account access or identity theft. Infrastructure analysis reveals the domain was registered on June 02, 2026, through NICENIC INTERNATIONAL GROUP CO., LIMITED. It appears on 4 security blocklists, indicating prior malicious activity. VirusTotal reports 6 out of 95 security vendors have detected this domain as malicious, with detections including phishing, fraud, and social engineering categories. The domain is currently offline, but its prior operational state and blocklist presence suggest a history of active exploitation. To mitigate risks associated with dao-keeta.com, organizations should immediately block the domain at the DNS and proxy levels. Endpoint protection systems should be updated to include this domain in phishing and malicious URL detection rules. Users who may have interacted with the domain should reset credentials for any accounts accessed during the exposure window, particularly if login pages were encountered. Security teams are advised to review logs for connections to dao-keeta.com or related IPs to identify potential compromise. Employee training should reinforce recognition of phishing tactics, including verification of domain authenticity before entering credentials.
Data Coverage
Данные сетевой безопасности
Процесс реагирования на угрозы
Проверка по блок-листам
10 внешних источников под наблюдением · снимок от 13.08.2026
7 внешних источников под наблюдением Совпадений нет
Хронология обнаружения
-
Статус домена
Доступен → Недоступен
-
Статус домена
Недоступен → Доступен
Аналитика доменов
Технические деталиDNS, имена TLS и временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание