sparkasse-bayreuth[.]de
“Internet-Filiale - Sparkasse Bayreuth”
sparkasse-bayreuth.de — 未验证. 品牌冒充:EBay; 诈骗类型:Brand Impersonation. 证据摘要: VirusTotal 3/91 (Chong Lua Dao, Gridinsoft, Quttera); PhishDestroy score 68/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain sparkasse-bayreuth.de was registered on February 21 2026. Its authoritative name servers are ns2.s-fg-net.com, ns3.s-fg-net.eu, ns4.s-fg-net.de, and ns5.s-fg-net.com. The site resolves to the IPv4 address 195.140.52.199, which is allocated to the German entity Finanz Informatik GmbH & Co. KG under AS9099. The HTTP response is a permanent redirect (301) and the TLS certificate is issued by DigiCert Ireland Limited, using a DigiCert G2 TLS EU RSA4096 SHA384 2022 CA1 chain. Technical fingerprinting indicates the presence of Adobe Experience Manager, Java, React, and HTTP Strict Transport Security (HSTS). The page title reported by the scanner is “Internet-Filiale - Sparkasse Bayreuth”. Although the domain is marketed as a Sparkasse branch, the threat profile lists the impersonated brand as eBay, suggesting a brand‑impersonation campaign that leverages the perceived legitimacy of a financial institution to lure victims. Open‑source intelligence shows the domain appears in a single security blocklist and has been flagged by PhishDestroy. AlienVault OTX contains one pulse referencing the domain. VirusTotal scans returned 0 detections out of 95 engines, and Gridinsoft assigned a trust score of 0 out of 100, indicating that automated scanners have not yet identified malicious payloads but the low trust score reflects the suspicious nature of the infrastructure. Analysts should treat sparkasse-bayreuth.de as an active brand‑impersonation threat. Defensive measures should include adding the domain and its resolving IP address to outbound and inbound block lists, monitoring DNS queries for the listed name servers, and enforcing TLS inspection to verify the certificate chain. Continuous re‑scanning is advised to detect any future payloads or changes in detection ratios.
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 4 identified
Adobe Experience Manager (AEM) is a content management solution for building websites, mobile apps and forms.
www.adobe.com 置信度 100%Java is a class-based, object-oriented programming language that is designed to have as few implementation dependencies as possible.
java.com 置信度 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 置信度 100%HTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 置信度 100%VirusTotal 分析
存档证据
网站性能分析
Google PageSpeed Insights — mobile performance audit of sparkasse-bayreuth.de · checked Mar 7, 2026
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。