kontakt[.]de-digittal[.]me
kontakt.de-digittal.me — 内容不可用. 证据摘要: VirusTotal 5/91 (alphaMountain.ai, Cluster25, CRDF, Gridinsoft, SOCRadar); PhishDestroy score 78/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain, kontakt.de-digittal.me, is flagged as a credential phishing site designed to harvest user login credentials through fraudulent web forms. Analysis indicates no direct association with a specific brand or known phishing kit, though the domain name mimics legitimate German contact portals to deceive users. The infrastructure appears generic, lacking distinctive branding but employing social engineering tactics to trick victims into submitting sensitive information. Infrastructure analysis reveals the following technical indicators: the domain was registered on May 20, 2026, an unusually future date suggesting potential typosquatting or domain spoofing. It resolves to the IP address 104.194.156.40, hosted by a provider in Germany (FranTech Solutions). At the time of detection, 16 out of 95 security vendors on VirusTotal flagged the domain as malicious. The domain appears on a single security blocklist and was actively blocked by endpoint protection systems. No SSL certificate is present, increasing the likelihood of interception or detection by modern browsers. The domain is currently offline, reducing immediate risk to end users. However, residual threats remain, particularly for systems that may have cached DNS entries or users who visited the site prior to takedown. Response actions should include monitoring for related domains using the same IP or registrar, as well as alerting users who may have interacted with the site. Despite its offline status, the domain’s creation date and hosting provider suggest potential for re-emergence under a similar scheme. Organizations are advised to block the domain and IP at the perimeter and conduct retrospective log analysis to identify any prior access attempts.
威胁响应 Pipeline
公共封禁名单状态
域名情报
技术细节DNS、SSL SAN、时间戳
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。