pont-e-cashback[.]dynv6[.]net
“Index of /”
pont-e-cashback.dynv6.net — Контент недоступний (HTTP 502). Зведення доказів: VirusTotal 15/93 (Criminal IP, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 95/100. Реєстратор: Hetzner Online.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
Analysis indicates that the domain pont-e-cashback.dynv6.net was created on 24 October 2014 and is currently offline. The domain resolves to the IP address 65.21.5.183, which belongs to the Hetzner Online GmbH network (AS24940) located in Finland. Registration was performed through Hetzner Online GmbH, and the authoritative name servers are ns1.dynv6.com, ns2.dynv6.com, ns2.dynv6.net, ns3.dynv6.com, and ns3.dynv6.net. No TLS certificate is presented for the host, and an HTTP request returns the generic directory listing page titled “Index of /”. The lack of SSL and the presence of a simple index page are consistent with a non‑functional or takedown state. VirusTotal records show that 15 out of 93 security scanners flagged the domain, indicating a moderate level of detection across the scanning community.
The domain is listed on a single public blocklist and is actively blocked by the PhishDestroy service. Gridinsoft assigns a trust score of 0 out of 100, further suggesting a high likelihood of malicious intent. The combination of multiple vendor detections, blocklist presence, and a zero trust score aligns with the classification of a generic phishing infrastructure. The domain’s lack of SSL, the generic index page, and the fact that it resolves to a Hetzner‑hosted IP are typical of disposable phishing infrastructure used to host malicious landing pages. The presence on PhishDestroy blocklist indicates that the domain has been identified as part of phishing campaigns.
Uncertainty remains regarding the specific phishing payload or target brand, as the page title provides no indication of the advertised service and no further content has been captured. The offline status prevents real‑time verification of active malicious pages, and there are no additional references such as OTX tags, Safe Browsing entries, or known malware kits. Defenders should continue to block any connections to pont-e-cashback.dynv6.net and its resolved IP address 65.21.5.
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Аналіз VirusTotal
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога