hausmeister38[.]de
“Hausmeisterservice 38 – Hausmeisterservice in der Region 38”
hausmeister38.de — 最后已知的活跃状态 (HTTP 200). 证据摘要: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 1 alert; PhishDestroy score 100/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain hausmeister38.de was registered on May 19, 2026 and is currently classified as a generic phishing site with a high risk rating. Its web page returns HTTP 200 and displays the title “Hausmeisterservice 38 – Hausmeisterservice in der Region 38”, indicating that the site is actively serving content aligned with the phishing campaign.
Infrastructure analysis shows that the domain resolves to the IP address 213.136.93.167, which is hosted by Contabo GmbH in France. The host presents a TLS certificate issued by a public certificate authority, and the site’s Gridinsoft trust score is 0 out of 100, reflecting a complete lack of credibility. An MX record exists with priority 10 pointing to mail.hausmeister38.de, suggesting that the operators have also provisioned email services to support credential collection.
Threat intelligence corroborates the malicious intent: five out of ninety‑five security vendors on VirusTotal have flagged the domain, and it appears in one known blocklist, PhishDestroy. Additionally, AlienVault OTX references the domain in a single threat pulse, reinforcing its presence in the broader security community. The domain currently remains active, indicating that the phishing infrastructure is still operational.
Defenders should prioritize immediate containment by adding hausmeister38.de and its resolved IP 213.136.93.167 to network blocklists and DNS filtering policies. Continuous monitoring for any related subdomains or newly observed IPs is advised, as the operators may expand their infrastructure. Updating endpoint protection signatures to include the observed threat indicators will help mitigate exposure to credential‑harvesting attempts originating from this campaign.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | hausmeister38.de |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
已保存的截图
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
网站配置分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。