pont-e-cashback[.]dynv6[.]net
“Index of /”
pont-e-cashback.dynv6.net — 内容不可用. 证据摘要: VirusTotal 15/93 (Criminal IP, alphaMountain.ai, BitDefender, CRDF, CyRadar); PhishDestroy score 95/100. 注册商: Hetzner Online.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
Analysis indicates that the domain pont-e-cashback.dynv6.net was created on 24 October 2014 and is currently offline. The domain resolves to the IP address 65.21.5.183, which belongs to the Hetzner Online GmbH network (AS24940) located in Finland. Registration was performed through Hetzner Online GmbH, and the authoritative name servers are ns1.dynv6.com, ns2.dynv6.com, ns2.dynv6.net, ns3.dynv6.com, and ns3.dynv6.net. No TLS certificate is presented for the host, and an HTTP request returns the generic directory listing page titled “Index of /”. The lack of SSL and the presence of a simple index page are consistent with a non‑functional or takedown state. VirusTotal records show that 15 out of 93 security scanners flagged the domain, indicating a moderate level of detection across the scanning community.
The domain is listed on a single public blocklist and is actively blocked by the PhishDestroy service. Gridinsoft assigns a trust score of 0 out of 100, further suggesting a high likelihood of malicious intent. The combination of multiple vendor detections, blocklist presence, and a zero trust score aligns with the classification of a generic phishing infrastructure. The domain’s lack of SSL, the generic index page, and the fact that it resolves to a Hetzner‑hosted IP are typical of disposable phishing infrastructure used to host malicious landing pages. The presence on PhishDestroy blocklist indicates that the domain has been identified as part of phishing campaigns.
Uncertainty remains regarding the specific phishing payload or target brand, as the page title provides no indication of the advertised service and no further content has been captured. The offline status prevents real‑time verification of active malicious pages, and there are no additional references such as OTX tags, Safe Browsing entries, or known malware kits. Defenders should continue to block any connections to pont-e-cashback.dynv6.net and its resolved IP address 65.21.5.
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。