werkstatt-west[.]de
“Home - Werkstatt West - Freie Kfz-Meisterwerkstatt in Leipzig”
werkstatt-west.de — 未验证. 诈骗类型:Generic Phishing. 证据摘要: VirusTotal 7/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF, Fortinet); URLQuery 2 alerts; PhishDestroy score 78/100.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
The domain werkstatt-west.de was registered on April 07, 2026 and is currently active. DNS resolution points to IP 185.125.174.18, which is hosted by KUES DATA GmbH in Germany. The domain uses the nameservers docks02.rzone.de and shades09.rzone.de and presents an SSL certificate issued by Let’s Encrypt (R12). An HTTP 301 redirect is observed, and the page title returned is "Home - Werkstatt West - Freie Kfz-Meisterwerkstatt in Leipzig", indicating a claim to be an automotive workshop in Leipzig. Security telemetry shows a Gridinsoft trust score of 0 out of 100, and the domain is listed on one security blocklist. It has been blocked by PhishDestroy and appears on a single additional blocklist. VirusTotal analysis reports that 10 of 94 security vendors flag the domain as malicious. The threat is classified as generic_phishing with a high risk rating. While the available data confirms the presence of phishing indicators and low trust metrics, no detailed content analysis of the hosted page is available, leaving the exact phishing vector and target audience unconfirmed. Defenders should consider adding the domain to blocklists, monitoring traffic to the associated IP, and employing sinkholing or DNS filtering to prevent user access. Ongoing observation is recommended to detect any changes in hosting or content that could alter the threat posture.
网络安全情报
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | werkstatt-west.de |
malicious | Sinkholed |
| DNS4EU | werkstatt-west.de |
malicious | Sinkholed |
威胁响应 Pipeline
公共封禁名单状态
VirusTotal 分析
网站性能分析
Google PageSpeed Insights — mobile performance audit of werkstatt-west.de · checked Jun 26, 2026
网站配置分析
证据与外部报告
您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。