q-kynvestium-strategie[.]com
“q-kynvestium-strategie.com”
q-kynvestium-strategie.com — Непроверенный. Олицетворение бренда: Genericcloudflare; Тип мошенничества: Impersonation. Сводка доказательств: VirusTotal 13/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 1 alert; URLScan malicious verdict; Spamhaus DBL_SPAM; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Регистратор: Hosting Concepts.
Подробный анализ PhishDestroy AI ниже оставлен на английском, чтобы сохранить исходную криминалистическую запись.
Analysis of q‑kynvestium‑strategie.com indicates a high‑risk phishing infrastructure. The domain is delegated to Cloudflare’s authoritative name servers pedro.ns.cloudflare.com and tara.ns.cloudflare.com and resolves to the Cloudflare IP 188.114.97.3, which is registered to AS13335 in the United States. The domain was registered on 2026‑02‑28 through Hosting Concepts B.V. d/b/a Registrar.eu and currently serves HTTP 200 responses without TLS encryption. The page title returned is identical to the domain name, and no SSL certificate is present. Reputation data is uniformly negative: Gridinsoft assigns a trust score of 0 / 100, the domain appears on three security blocklists, and it is listed as blocked by PhishDestroy, MetaMask, and SEAL. VirusTotal scans report 14 of 93 vendors flagging the domain as malicious. No additional content analysis is available, so the exact phishing lure cannot be confirmed, but the combination of a newly created domain, Cloudflare front‑end, lack of encryption, and multiple detections strongly suggests a deliberate phishing operation. Defenders should immediately deny or sinkhole traffic to this domain, add it to local and network‑level blocklists, and monitor for any related C2 or credential‑harvesting activity originating from the same IP address or Cloudflare account.
Данные сетевой безопасности
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | q-kynvestium-strategie.com |
malicious | Sinkholed |
Процесс реагирования на угрозы
Статус в публичных блок-листах
Сохранённый снимок
Аналитика доменов
Технические сведенияDNS, SAN в протоколе SSL, временные метки
ICANN OVERSIGHT
Аккредитация и контекст RAA
Аккредитация и контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Анализ VirusTotal
Архивные доказательства
Доказательства и внешние отчеты
Повлиял ли на вас этот сайт?
Если вы ввели учетные данные, личную или платежную информацию или загрузили файл с этого домена, примите немедленные меры. Ниже приведены ресурсы, которые помогут вам сообщить об инциденте и защитить себя.
Сообщите об этом в местные органы власти
Выберите свою страну, чтобы получить официальные контакты по киберпреступности или создать проект жалобы →.
Проверить любой домен
Анализ угроз с использованием сохраненного черного списка, WHOIS, DNS и общедоступных доказательств сканирования.
Сканировать сейчасСообщить о фишинге
Добавляйте подозрительные домены в нашу базу данных угроз — защищайте сообщество
СообщитьПоток оперативных данных об угрозах
Недавние сообщения о фишинге и наблюдаемые изменения доступности
ОтслеживатьБудьте в курсе событий, берегите себя
Отслеживайте актуальные угрозы или оспорьте эту запись, если считаете, что это ложное срабатывание