wp[.]pl-krajowyrejestdlugow[.]info[.]vh13647[.]vh[.]net[.]pl
wp.pl-krajowyrejestdlugow.info.vh13647.vh.net.pl — 未验证. 证据摘要: VirusTotal 6/90 (CRDF, G-Data, Gridinsoft, SOCRadar, URLQuery); URLQuery 2 det.; URLScan capture; Spamhaus DBL_ABUSED_PHISH; 1 external blocklist match (OpenPhish); CF Radar malicious; PhishDestroy score 72/100. 注册商: Prociv Sp. z o.o.
为保留原始取证记录,下方的 PhishDestroy AI 详细分析仍使用英文。
wp.pl-krajowyrejestdlugow.info.vh13647.vh.net.pl is a subdomain of vh.net.pl. PhishDestroy first observed the hostname on Sep 3, 2026. Current evidence score: 72/100 (critical).
Positive findings are stored from 5 sources: VirusTotal, OpenPhish, Spamhaus DBL, Cloudflare Radar, and URLQuery. On Sep 3, 2026 at 14:20 UTC, VirusTotal recorded 6 detections among 90 engines: CRDF, G-Data, Gridinsoft, SOCRadar, URLQuery, Webroot; OpenPhish listed the hostname in the separate external-blocklist snapshot. Spamhaus DBL: DBL_ABUSED_PHISH on Sep 3, 2026 at 14:30 UTC. Cloudflare Radar classified the hostname as malicious and placed it in the malware category; its verdict timestamp was not retained. URLQuery recorded 2 detections; no observation timestamp was retained. Non-positive and contextual checks: Google Safe Browsing returned no flag on Sep 3, 2026 at 16:05 UTC. URLScan captured the page on Sep 3, 2026 at 14:14 UTC.
The collector marked the hostname reachable on Sep 3, 2026 at 14:14 UTC, but did not retain the HTTP response code. Registration records for the registrable domain vh.net.pl list Prociv Sp. z o.o. as the registrar and May 30, 2019 as the creation date. At collection time, the hostname resolved to 83.168.99.220 on AS214349 (NODEA SPOLKA Z OGRANICZONA ODPOWIEDZIALNOSCIA). The recorded endpoint location is Warsaw, PL. The evidence archive retains 2 visual captures from PhishDestroy and URLScan; no page title was retained, so the captures preserve the landing-page appearance. TLS metadata lists Let's Encrypt as the certificate issuer with validity through Nov 29, 2026; checked Sep 3, 2026 at 16:02 UTC.
The record contains 5 positive source findings supporting the current phishing classification. The stored fields do not identify an impersonated brand or victim interaction.
网络安全情报
威胁响应 Pipeline
公共封禁名单状态
所用技术 · 2 identified
HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org 置信度 100%VirusTotal 分析
存档证据
证据与外部报告
PD-20260903-F2D6A4 Recipient: abuse@korbank.pl 您是否受到本网站的影响?
如果您输入了帐户凭据、个人或付款信息,或者从此域下载了文件,请立即采取措施。以下资源可帮助您报告事件并保护自己。