config-update[.]site
“config-update.site/”
Kanıt özeti
The domain config-update.site was registered on February 21, 2026 through Hostinger Operations UAB and is hosted on the IP address 45.61.157.248, which belongs to AS14956 RouterHosting LLC in the United States. The authoritative nameservers are ns1.dns-parking.com and ns2.dns-parking.com, indicating that the domain is parked rather than served from a dedicated hosting environment. No SSL certificate is presented for the site, meaning traffic is unencrypted and susceptible to interception. The page title returned by the HTTP request is simply "config-update.site/", and the site is currently taken offline, limiting immediate interaction but not removing the underlying infrastructure.
Reputation signals are strongly negative: the domain appears on three security blocklists, has a Gridinsoft trust score of 0 out of 100, and is listed as blocked by PhishDestroy, MetaMask, and SEAL. VirusTotal analysis shows that one out of ninety‑three scanning engines flagged the domain, reinforcing the malicious assessment. The classified scam type is credential phishing, suggesting that the domain was used to harvest login credentials from unsuspecting users.
While the exact landing page content has not been captured, the convergence of blocklist presence, zero trust score, lack of TLS, and the explicit phishing classification provides sufficient evidence for security teams to treat the domain as malicious. Defenders should ensure that the domain and its resolving IP are added to network deny lists, monitor for any re‑activation or DNS changes, and investigate any outbound traffic that may target the same hosting provider. Continuous telemetry on related AS14956 activity is recommended to detect potential reuse of the infrastructure for future credential‑phishing campaigns.
Gönderilen kanıt anlık görüntüsü
- Gönderildi
- Kayıt defteri kayıtları
- 1
- Vaka kimliği
PD-20260202-F72F37- Yakalanan sayfa başlığı
- config-update.site/
- PDF belgesi
- PDF kanıtı
Hukuki dayanak
Kanıtın tam metni
Acceptable Use Policy (AUP): The domain config-update.site is engaged in phishing activities, which constitute a direct violation of your AUP prohibiting illegal activities and fraud.
Terms of Service (TOS): The continued operation of this domain violates your TOS, which reserves the right to suspend or terminate services for activities that involve deception and fraud.
Applicable Laws (Unknown):
Computer Fraud and Abuse Act (CFAA): This U.S. law prohibits unauthorized access to computers and networks, which applies to phishing schemes that deceive users into providing sensitive information.
Wire Fraud Statute (18 U.S.C. § 1343): This law criminalizes schemes to defraud individuals or entities using electronic communications, including phishing.
CAN-SPAM Act (15 U.S.C. § 7701): This act regulates commercial email and prohibits deceptive practices, which are evident in the phishing attempts associated with this domain.
Regulatory Note: Failure to take immediate action against this domain may result in legal consequences and potential liability for facilitating fraudulent activities. Compliance with your AUP and TOS is essential to mitigate risks associated with domain abuse.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Tespit zaman çizelgesi
-
Cloudflare Radar
Cloudflare Radar taraması kaydedildi · Taramayı aç
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin