Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@adacor.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
volksbank-koeln-bonn[.]kontoeroeffnung-fk[.]de
“Kontoeröffnung Firmenkunde der Volksbank Köln Bonn eG”
volksbank-koeln-bonn.kontoeroeffnung-fk.de — 未验证. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 16/91 (BitDefender, Chong Lua Dao, CRDF, CyRadar, ESET); URLQuery 3 alerts; PhishDestroy score 95/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
This domain hosts a page titled Kontoeröffnung Firmenkunde der Volksbank Köln Bonn eG and returns an HTTP 200 status while remaining active. It resolves to IP address 46.167.168.30 located in Germany under AS42442 Adacor Hosting GmbH and uses the nameservers ns1.hosting.de, ns2.hosting.de and ns3.hosting.de. The certificate was issued by Let's Encrypt under the YR1 profile. The page content mimics corporate account opening procedures associated with Volksbank Köln Bonn eG.
Detection data shows 14 out of 95 vendors marking the domain on one scanning platform along with a trust score of 0 out of 100 from a separate source. The domain appears on one security blocklist and has been recorded by PhishDestroy. Infrastructure analysis reveals standard hosting resources that do not match known legitimate domains operated by the referenced financial institution.
Current status indicates the site continues to serve content without interruption as of July 12 2026. The scam classification listed is generic phishing with no additional registration or creation dates available for further timeline reconstruction. No evidence confirms ownership by the bank whose branding appears on the page.
Defenders should block the domain and its resolving IP at network perimeters and email gateways. Organizations are advised to compare the domain against official bank domains through direct verification channels and to log any user attempts to access the resource for incident correlation. Continuous monitoring of similar subdomain patterns is recommended given the active status.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | volksbank-koeln-bonn.kontoeroeffnung-fk.de |
malicious | Sinkholed |
| Hagezi Threat Feed | volksbank-koeln-bonn.kontoeroeffnung-fk.de |
malicious | Sinkholed |
| DNS4EU | volksbank-koeln-bonn.kontoeroeffnung-fk.de |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
证据与外部报告
PD-20260624-624BEA Recipient: abuse@adacor.com 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。