hardware-wallet-vergleich[.]de
“Hardware Wallet Test 2020 ▷Top 5 im Test ▷Beratung + Vergleich”
hardware-wallet-vergleich.de — 未验证. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 3/91 (CRDF, Gridinsoft, SOCRadar); PhishDestroy score 76/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, hardware-wallet-vergleich.de, was registered on 26 April 2026 and resolves to the IPv4 address 85.13.156.134, which is geolocated to Germany and associated with Neue Medien Muennich GmbH. The hosting server runs Apache HTTP Server with a valid Let’s Encrypt R13 certificate, and serves HTTP 200 responses for the index page. The web application is built on a WordPress stack, identified by the presence of MySQL, PHP, Bootstrap, Yoast SEO, Select2, and Lightbox components. Automated analysis gave the site a Gridinsoft trust score of 0 out of 100, and it appears on a single security blocklist. The domain is also referenced in one AlienVault OTX pulse. No detections were recorded on VirusTotal at the time of analysis. Threat intelligence classifies the site as a crypto‑drainer, and the page title “Hardware Wallet Test 2020 ▷Top 5 im Test ▷Beratung + Vergleich” suggests it is masquerading as a legitimate hardware‑wallet comparison resource. Such a presentation is commonly used to lure cryptocurrency users into providing wallet addresses or private keys, potentially enabling unauthorized transfers. Current evidence does not reveal the specific payload or form used to capture credentials, nor does it show any malicious binaries hosted on the server. The lack of VirusTotal detections does not imply safety, as the site may rely on social engineering rather than executable malware. Further investigation is required to determine the exact data‑collection mechanisms and any downstream command‑and‑control infrastructure. Defenders should block resolution of hardware-wallet-vergleich.de at network perimeter, monitor DNS queries for the associated IP address, and inspect outbound traffic from internal hosts for unusual cryptocurrency‑related requests. Incident response teams are advised to capture any user submissions to the site for forensic analysis and to educate users about the risk of entering wallet credentials on untrusted comparison pages.
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
所用技术 · 10 identified
WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.
wordpress.org 置信度 100%Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.
getbootstrap.com 置信度 100%Yoast SEO is a search engine optimisation plugin for WordPress and other platforms.
yoast.com 置信度 100%Select2 is a jQuery based replacement for select boxes. It supports searching, remote data sets, and infinite scrolling of results.
select2.org 置信度 100%Lightbox is small javascript library used to overlay images on top of the current page.
lokeshdhakar.com 置信度 100%jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com 置信度 100%Hotjar is a suite of analytic tools to assist in the gathering of qualitative data, providing feedback through tools such as heatmaps, session recordings, and surveys.
www.hotjar.com 置信度 100%VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。