MALICIOUS — CRITICAL
dieschweizerpost[.]com
This domain, dieschweizerpost.com, is flagged as a credential theft operation impersonating Swiss Post, a legitimate postal service provider.
- VirusTotal
- 16/91
- Blocklists
- 2 · MetaMask, SEAL
- Доступность
- Контент недоступен · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
dieschweizerpost.com — Контент недоступен (HTTP 502). Тип мошенничества: Credential Phishing. Сводка доказательств: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 100/100. Регистратор: Hosting Concepts.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Evidence Analysis
This domain, dieschweizerpost.com, is flagged as a credential theft operation impersonating Swiss Post, a legitimate postal service provider. Analysis indicates the site employs deceptive login interfaces to harvest user credentials, likely targeting customers expecting official communications. No direct association with known crypto drainer kits has been confirmed, but the infrastructure aligns with credential harvesting campaigns observed in recent months. Infrastructure analysis reveals the domain was registered on May 20, 2026, through Hosting Concepts B.V. d/b/a Registrar.eu, an uncommon future date suggesting potential domain spoofing or registry manipulation. It resolves to IP address 144.172.99.237, hosted by FranTech Solutions in the United States. The domain is detected by 16 out of 95 security vendors on VirusTotal, with a page title of 'Accès refusé,' which may indicate restricted access or cloaking techniques. It appears on three security blocklists and is actively blocked by multiple threat intelligence feeds. As of the latest assessment, dieschweizerpost.com remains active and operational, posing a persistent risk to unsuspecting users. The SSL certificate, issued by Let's Encrypt (serial number E7), provides encryption but does not validate legitimacy. Organizations and individuals are advised to block the domain at the network level and monitor for related indicators of compromise. Users should verify sender authenticity before interacting with any communications claiming affiliation with Swiss Post, particularly those directing to unfamiliar domains.
Охват данных12 recorded checks
Процесс реагирования на угрозы
Статус в публичных блок-листах
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Доказательства и внешние отчетыIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.