heractiveren-nu[.]com
Перевірка домену heractiveren-nu.com на фішинг і безпеку
“Rabobank - Internet Bankieren”
heractiveren-nu.com — Контент недоступний (HTTP 502). Уособлення бренду: Rabobank; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 21/91 (Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 3 alerts; URLScan malicious verdict; PhishDestroy score 98/100. Реєстратор: OwnRegistrar.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Evidence Analysis
This domain, heractiveren-nu.com, is identified as a phishing site designed to impersonate Rabobank, a financial institution. The page title, 'Rabobank - Internet Bankieren,' directly mimics the legitimate online banking portal of Rabobank, indicating a clear intent to deceive users into entering sensitive credentials. Analysis of the domain reveals no association with cryptocurrency drainer kits; instead, it functions as a fake login portal targeting banking customers. The threat type is classified as generic phishing with a focus on brand impersonation, specifically targeting Dutch-speaking users. Technical indicators confirm the malicious nature of this domain. VirusTotal reports that 21 out of 95 security vendors flag heractiveren-nu.com as malicious. The domain was registered on June 12, 2026, through OwnRegistrar, Inc., a registrar frequently utilized for suspicious domains. It resolves to the IP address 172.67.157.2, which is hosted on a content delivery network known for obfuscating the true origin of malicious sites. The SSL certificate is issued by Google Trust Services under the WE1 intermediate, a common practice among phishing domains to appear legitimate. The domain appears on one security blocklist, and AlienVault OTX records it in two threat intelligence pulses, further corroborating its malicious classification. As of the latest assessment, heractiveren-nu.com has been taken offline, reducing immediate risk to end users. However, the infrastructure supporting this domain remains a concern, particularly given the future creation date (2026), which may indicate an attempt to evade detection or a placeholder for future malicious activity. Users who may have interacted with this domain are advised to immediately change their banking credentials and monitor accounts for unauthorized transactions. Organizations should update their blocklists to include this domain and its associated IP address to prevent future access. While the domain is currently inactive, vigilance is warranted due to the potential for re-emergence under a similar or altered infrastructure.
Обсяг даних12 recorded checks
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | heractiveren-nu.com |
malicious | Sinkholed |
| Cloudflare DNS | heractiveren-nu.com |
malicious | Sinkholed |
| DNS4EU | heractiveren-nu.com |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звітиIndependent lookups and source reports
PD-20260617-D93E65 Recipient: abuse@ownregistrar.com Victim safety and official reportingImmediate actions and verified reporting channels
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.