kea47[.]at
Зведення доказів
This domain, kea47.at, functions as a phishing gateway designed to intercept user credentials through deceptive authentication portals. Analysis indicates the site mimics login interfaces for financial or corporate services, leveraging Cloudflare infrastructure to obscure its true origin and evade detection. The domain’s structure and behavior align with credential-harvesting campaigns, where victims are redirected to fraudulent pages after interacting with seemingly legitimate prompts. Given its elevated risk classification, this domain poses a significant threat to individuals and organizations by facilitating unauthorized access to sensitive accounts. Infrastructure analysis reveals multiple technical indicators supporting its malicious classification. The domain resolves to IP address 104.21.59.161, a Cloudflare-hosted endpoint, and presents an SSL certificate issued by Google Trust Services, a common tactic to appear legitimate. VirusTotal reports 3 out of 95 security vendors flagging kea47.at as malicious, while Gridinsoft assigns a trust score of 0 out of 100. The domain was registered on February 21, 2026, through an undisclosed registrar, and is currently blocked by one security blocklist. Its page title, 'Just a moment...,' is consistent with Cloudflare’s interstitial pages, often exploited to delay or redirect users during phishing attempts. Users who visited kea47.at should immediately take corrective actions to mitigate potential compromise. Any credentials entered on this domain must be considered exposed and should be changed across all platforms where the same passwords were used. System scans using updated security tools are recommended to detect any residual malware or unauthorized access. Organizations should review logs for connections to 104.21.59.161 or related domains and implement additional authentication measures, such as multi-factor verification, to prevent further exploitation. Given the domain’s current offline status, users should remain vigilant for similar phishing attempts leveraging Cloudflare or other content delivery networks.
Data Coverage
Процес реагування на загрози Pipeline
Перевірка за блок-листами
10 зовнішніх джерел під наглядом · знімок від 11.08.2026
Хронологія виявлення
-
VirusTotal
1 → 3
Аналіз VirusTotal
Аналіз продуктивності сайту
Google PageSpeed Insights — mobile performance audit of kea47.at · checked Jun 27, 2026
Аналіз конфігурації сайту
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога