admin[.]xn--lautstrke-02a[.]de
“lautstärke.de”
admin.xn--lautstrke-02a.de — Неперевірений. Тип шахрайства: Generic Phishing. Зведення доказів: VirusTotal 16/91 (ADMINUSLabs, ChainPatrol, BitDefender, Chong Lua Dao, CRDF); 1 external blocklist match (Enkrypt); PhishDestroy score 95/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
The domain admin.xn--lautstrke-02a.de was registered on February 21, 2026 and resolves to the IPv4 address 185.53.177.54, which is announced by AS61969 Team Internet AG in Germany. The host presents a valid TLS certificate issued by Let’s Encrypt (R13) and returns HTTP status code 200 when queried. The page title returned by the server is "lautstärke.de", matching the punycode representation of the domain.
VirusTotal analysis shows that 2 out of 95 security vendors have flagged the domain as malicious, and the domain appears on two external blocklists. Independent security tools have assigned a Gridinsoft trust score of 0 out of 100, indicating a lack of confidence in the site’s legitimacy. The domain is currently listed as blocked by the PhishDestroy and Enkrypt blocklists, reinforcing the classification as a high‑risk phishing infrastructure.
The available intelligence confirms that the site is actively serving content (HTTP 200) and that its TLS certificate is correctly installed, which can aid in evading simple network‑level defenses. However, the exact content of the page has not been captured, and no specific brand or credential‑collection vector has been identified beyond the generic phishing label. The absence of detailed payload information leaves the precise attack vector and victim profile uncertain.
Defenders should prioritize the inclusion of 185.53.177.54 and the full hostname admin.xn--lautstrke-02a.de in outbound filtering rules. Continuous monitoring of DNS queries for this domain is advised, as well as the deployment of sink‑hole or blocklist updates to prevent client connections. Given the high risk rating and the active status, security teams should also consider proactive user awareness campaigns that reference the domain name and its association with phishing attempts.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога