klelnanzeigen-deutch[.]provide750[.]world
“Google”
klelnanzeigen-deutch.provide750.world — Контент недоступний. Уособлення бренду: Eigenlayer; Тип шахрайства: Brand Impersonation. Зведення доказів: VirusTotal 8/95 (ADMINUSLabs, alphaMountain.ai, CyRadar, Forcepoint ThreatSeeker, Fortinet); PhishDestroy score 74/100. Реєстратор: Cloudflare.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis of the domain klelnanzeigen-deutch.provide750.world, confirmed as a brand impersonation phishing site, reveals several critical indicators that validate its malicious nature. The domain was registered through Cloudflare, Inc., and it appears on one security blocklist, indicating it has been flagged as potentially harmful. The domain impersonates Eigenlayer, a targeted brand, and the page title found is 'Google,' which suggests the site may have been designed to mislead users by mimicking a well-known and trusted entity. The domain resolves to an IP address (142.250.65.228) located in the United States and associated with Google LLC (AS15169). However, it does not have an SSL certificate, which is a red flag for security-conscious users and systems.
Despite the lack of an SSL certificate, the domain was flagged by 8 out of 95 security vendors on VirusTotal, further corroborating its suspicious status. The domain is currently offline, which could indicate that it has been taken down by security teams or the hosting provider. Defenders should remain vigilant and ensure that this domain is blocked in their network security policies. The domain's offline status should not be taken as a sign of safety, as phishing sites can be rapidly re-deployed.
Additionally, the domain is blocked by PhishDestroy, a known security tool, which reinforces the need for continued monitoring and blocking. The nameservers for the domain are not found, which may be due to the domain being taken offline. Defenders should also consider the broader context of the Eigenlayer brand impersonation and ensure that users are aware of the risks associated with such scams. Regularly updating security awareness training to include examples of brand impersonation can help mitigate the risk of users falling victim to similar attacks.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: provide750.world
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain provide750.world behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога