ScamLens analyzed thomaskoehler.eu using 90+ threat intelligence sources and assigned a trust score of 72/100, classifying it as safe.
Trust Score: 72/100
Risk Level: Trusted
This result is still in the investigation range, so the domain alone is not enough for a decision. The next step is to cross-check the email, phone number, company identity, and scenario.
Quick Answer
This result is still in the investigation range, so the domain alone is not enough for a decision. The next step is to cross-check the email, phone number, company identity, and scenario.
Positive Signals
- +Google Safe Browsing: Safe
- +Valid SSL certificate
- +HTTPS encryption supported
Concerns
- -Cross-domain redirect detected
Score Breakdown
Was this assessment accurate?
thomaskoehler.eu looks legitimate
No threat feeds have flagged this domain. Use standard online-safety habits.
- Bookmark the official URLScammers often clone legitimate brands at look-alike domains. A saved bookmark protects you from typos.
- Watch for unexpected payment requestsEven legitimate sites can be hijacked. Treat unsolicited 'urgent payment' prompts as suspicious.
- Verify HTTPS + the exact spellingConfirm the lock icon, and inspect the domain letter-by-letter before entering passwords or card details.
Trust but verify — open this domain on unrelated security services and compare the verdict.
Sign in to run the AI risk analysis
The threat-intelligence signals below are available to everyone. The plain-language AI risk summary is generated on demand for signed-in users — sign in (free) to run it for this domain.
Threat-intelligence sources
Checked across 22 sources — 1 flagged this domain
Show source breakdown
Threat-intelligence sources
Checked across 22 sources — 1 flagged this domain
- safe_browsingclean
- urlhausclean
- cloudflare_radarclean
- cert_transparencyclean
- alienvault_otxclean
- phishstatsclean
- phishdestroyclean
- threatfoxclean
- shodan_internetdbclean
- phishtankclean
- rdapclean
- maltiverseclean
- dns_securityclean
- wanted_domainsclean
- darkwebclean
- maltrailflagged
- hagezi_tifclean
- openphishclean
- scam_blocklistclean
- crypto_scam_feedclean
- phishing_armyclean
- red_flag_domainsclean
ScamLens aggregates real-time signals from 90+ commercial and open-source threat-intelligence providers including Google Safe Browsing, VirusTotal, PhishTank, URLhaus, ThreatFox, Cloudflare Radar, OTX, IPQS, GoPlus, Honeypot.is, and more. A flagged signal is evidence; the absence of flags is not proof of safety. Use the signals below alongside community reports to decide.
Advanced Scan
Comprehensive data lookup across premium sources
- Website history verification
- Detailed WHOIS information
- Reverse WHOIS association
- Traffic rank analysis
- Company registration check
AI Deep Investigation
Cross-check the story, claims, and supporting evidence before you decide
- Everything in Advanced Scan
- AI website content analysis
- AI cross-reference verification
- Claim authenticity validation
- Detailed report with evidence
Comprehensive Investigation
Full-spectrum investigation with company deep search & social intelligence
- Everything in Deep Investigation
- AI company background search
- Social media intelligence
- Detailed suspicious point analysis
- Event timeline & entity connections
This analysis is for informational purposes only and does not constitute a legal determination.
Security Sources
Domain Information
- DNSSEC
- Disabled
SSL/TLS Certificate
- Issuer
- C=GB, O=Sectigo Limited, CN=Sectigo Public Server Authentication CA DV R36
- Valid From
- March 31, 2026
- Valid To
- October 15, 2026
- Status
- Valid
Redirect Chain
2 hopsCross-domain redirect detected
This domain redirects to a different domain. This is commonly used by phishing sites to evade detection.
thomaskoehler.eu → thomas-koehler.eu
thomaskoehler.eu
Status: 301thomas-koehler.eu
Status: 301Final destination
thomas-koehler.eu
Server Information
- IP Address
- 81.169.145.93
- Hosting Provider
- Strato AG
- ASN
- AS6724 Strato GmbH
- Server Location
- Berlin, Germany
- Organization
- Strato AG
Related Intelligence
Technical Details (DNS / Headers / Subdomains)
DNS Records
Email Security
SPF ConfiguredDMARC Configured| Type | Value |
|---|---|
| A | 81.169.145.93 |
| AAAA | 2a01:238:20a:202:1093:: |
| MX | 5 smtpin.rzone.de |
| NS | shades11.rzone.de |
| NS | docks13.rzone.de |
| TXT | v=spf1 a mx ~all |
| TXT | MS=FAE442827B4E5AFCC7DBB2C19B2910C85AB47DB2 |
HTTP Security Headers
0/6Channels / Subdomains
1 subdomains found| Subdomain | Title |
|---|---|
| www.thomaskoehler.eu | Thomas Köhler - Nutzervertretung und Projektmanagement für neue Arbeitsorte |
Community Reports
Log in to report and share your experience
Continue Investigating
The result is still in the investigation range. Cross-check the email, phone, and entity data next
Medium-risk domains are easiest to misread when you only check one signal. The decision gets more reliable once you cross-check the email, phone number, company identity, and business scenario together.
Recommended First
Analyze the related email or invoice
Confirm whether the billing notice, restriction alert, or support email actually matches the site.
Check the company or seller identity
Compare the domain against the company identity, merchant profile, or hiring details.
Check the related phone number
If the actor wants a callback, phone verification, or one-time code readout, verify that number next.
Open the matching scenario guide
If the case involves investing, shopping, or recovery services, verify it through the matching scenario guide.
The results are based on multiple third-party data sources and AI models. False positives or negatives may occur. This report should not be used as the sole basis for any decision. Please verify with additional sources.
Verify the related evidence objects first
Medium-risk cases are easiest to misread when you only check one signal. Verify the email, phone, and entity before deciding whether to report or stop the transaction.
If you already paid or exposed account access, skip the investigation loop and move into the action plan.
Related Security Guides
Learn more about how to protect yourself from this type of threat.
Understanding this threat
FAQ
Is thomaskoehler.eu safe to visit?
thomaskoehler.eu received a trust score of 72/100 from ScamLens, based on analysis of 30+ threat intelligence sources. No significant threats were detected. The site appears safe and trustworthy.
Was thomaskoehler.eu flagged by any threat databases?
thomaskoehler.eu was flagged by 1 out of 30+ threat intelligence sources. Specifically flagged by: maltrail. The detected threat categories include: general threat.
How old is thomaskoehler.eu?
Registration date information for thomaskoehler.eu is not publicly available through WHOIS records, which can itself be a risk indicator.
Does thomaskoehler.eu use HTTPS and have a valid SSL certificate?
thomaskoehler.eu uses an SSL certificate issued by C=GB, O=Sectigo Limited, CN=Sectigo Public Server Authentication CA DV R36, valid until October 15, 2026. The certificate is from a commercial certificate authority, which provides a higher level of validation.
What security headers does thomaskoehler.eu implement?
thomaskoehler.eu is missing important security headers: Content-Security-Policy, X-Frame-Options, X-Content-Type-Options, Strict-Transport-Security, Referrer-Policy, Permissions-Policy. Missing security headers can leave visitors vulnerable to cross-site scripting (XSS) and other web-based attacks.
What does the ScamLens community think about thomaskoehler.eu?
No community votes or reports have been submitted for thomaskoehler.eu yet. You can be the first to share your experience.
Where is thomaskoehler.eu hosted?
thomaskoehler.eu is hosted by Strato AG in Berlin, Germany (ASN: ASAS6724 Strato GmbH).
What should I do about thomaskoehler.eu?
Based on our analysis, thomaskoehler.eu appears safe. You can proceed with normal caution. Always verify URLs manually and avoid clicking suspicious links.
Is this report useful?
Use this report to prompt others to keep cross-checking the email, phone number, and entity details instead of clearing it too early.
Forward to your parents — they deserve to browse safely too.
About this analysis
This report is generated from real-time data across 90+ threat intelligence sources, combined with AI analysis and community feedback.
Learn about our scoring methodology | Last analyzed: August 3, 2026