medical-kolbe[.]de
“Home - Physio Kolbe Medicaltraining”
medical-kolbe.de — Doğrulanmamış. Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 12/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Forcepoint ThreatSeeker); URLQuery 3 alerts; PhishDestroy score 91/100.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Analysis of the domain medical-kolbe.de indicates active credential phishing activity with a high-risk classification. The domain was registered on April 15, 2026, and resolves to IP address 92.205.170.212, hosted by Host Europe GmbH in Germany. Infrastructure analysis reveals the use of WordPress, MySQL, PHP, Yoast SEO, Apache HTTP Server, jQuery Migrate, and jQuery, suggesting a standard but potentially vulnerable web stack commonly exploited for phishing. The page title, 'Home - Physio Kolbe Medicaltraining,' implies a focus on medical or physiotherapy services, which may be used to deceive users in the healthcare sector. The domain is flagged by six of ninety-four security vendors on VirusTotal, and it appears on one security blocklist. A Gridinsoft trust score of 0/100 and a Scamadviser trust score of 1/100 further corroborate its malicious classification. The domain is actively blocked by PhishDestroy, a phishing-specific detection system, and is categorized as a credential phishing threat. SSL certification is provided by Let's Encrypt (R12), a common but not inherently trustworthy issuer in phishing campaigns. Nameservers ns71.domaincontrol.com and ns72.domaincontrol.com are associated with the domain registrar, which is consistent with legitimate and malicious domains alike. The HTTP status code 200 confirms the site is currently accessible, though this does not validate its legitimacy. Defenders should treat this domain as hostile. Blocking the domain and its resolving IP (92.205.170.212) at the perimeter is recommended. Further investigation into associated email addresses, WHOIS details, and hosting infrastructure may reveal additional indicators of compromise. The exact content of the phishing page remains unanalyzed, but the combination of low trust scores, vendor detections, and phishing-specific blocking justifies immediate containment actions.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | medical-kolbe.de |
malicious | Sinkholed |
| DNS4EU | medical-kolbe.de |
malicious | Sinkholed |
| Quad9 DNS | medical-kolbe.de |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 7 identified
Open-source CMS powering over 40% of websites worldwide.
Open-source relational database management system.
Server-side scripting language designed for web development.
Most widely used open-source HTTP server software.
Plugin to detect and restore deprecated jQuery features.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of medical-kolbe.de · checked Apr 15, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin