Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@netcup.de.
The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
scheidungskanzlei-online[.]de
“Расторжение брака в Германии — онлайн”
scheidungskanzlei-online.de — Неперевірений. Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 4/91 (CRDF, Forcepoint ThreatSeeker, Gridinsoft, SOCRadar); URLQuery 1 alert; PhishDestroy score 76/100.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, scheidungskanzlei-online.de, is identified as a credential theft scam. The domain appears to be designed to trick users into providing sensitive information, such as login credentials, under the guise of offering online divorce services in Germany. The page title, 'Расторжение брака в Германии — онлайн' (which translates to 'Divorce in Germany — online'), suggests a legitimate service, but analysis indicates it is a deceptive front.
Evidence supporting the credential theft designation includes the domain being flagged by 1 out of 95 security vendors on VirusTotal. The domain is also listed on one security blocklist, specifically PhishDestroy. The SSL certificate is issued by Let's Encrypt, which is a common choice among phishing sites due to its ease of acquisition. The domain resolves to an IP address (188.68.47.102) located in Germany and is registered under AS197540 netcup GmbH. These factors, combined with the domain's active status, present a high risk to users who may visit the site.
If users have visited scheidungskanzlei-online.de, they should immediately change their passwords for any accounts they may have entered credentials into during the session. It is also recommended to run a full system scan to detect any potential malware that may have been installed. Users should report the incident to their security team or a trusted cybersecurity professional for further analysis and to monitor their accounts for any unauthorized activity.
Розвіддані з мережевої безпеки
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | scheidungskanzlei-online.de |
malicious | Sinkholed |
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Технології · 12 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 100% впевненостіBootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 100% впевненостіYoast SEO is a search engine optimisation plugin for WordPress and other platforms.
yoast.com 100% впевненостіNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% впевненостіCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com 100% впевненостіOsano is a data privacy platform that helps your website comply with regulations such as GDPR and CCPA.
www.osano.com 100% впевненостіJSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.
www.jsdelivr.com 100% впевненостіGoogle Analytics is a free web analytics service that tracks and reports website traffic.
google.com 100% впевненостіPopper is a positioning engine, its purpose is to calculate the position of an element to make it possible to position it near a given reference element.
popper.js.org 100% впевненостіАналіз VirusTotal
Аналіз конфігурації сайту
Докази та зовнішні звіти
PD-20260617-BB4BAF Recipient: abuse@netcup.de Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога