Domain Due Diligence
Report for Nettokom.de
Why we think so?
nettokom.de appears to be the official site for NettoKOM, a German prepaid mobile brand tied to Netto Marken-Discount and Telefónica. The site has substantial traffic (~168k monthly visits), up-to-date news mentions in German tech press, working contact details (email + phone) and a valid TLS certificate. There are a few minor caution signals — a WHOIS record with limited public registrant data and an automated low trust score reported by a third-party aggregator — but multiple independent signals (high traffic, news coverage, Google Safe Browsing clean, established tech stack) point to a legitimate service. Verdict: ✅ Likely safe / trusted, but verify purchases and account actions through official retailer channels.
Risk Insights
High local traffic and media presence
- ~168k estimated monthly visits, almost all from Germany.
- Multiple German outlets (Teltarif, Golem, Telefónica press) reference NettoKOM promotions.
- Traffic and coverage point to an active commercial service rather than a throwaway scam page.
WHOIS privacy reduces traceability
- WHOIS shows CSC name servers and no public registrar/creation date.
- This is common for corporate domains but makes ownership checks harder.
- Corroborate identity via parent company pages or retail listings.
Contradictory Signals
Automated reputation tools can flag domains for registration anomalies even when other evidence (traffic + press) points to a legitimate business. Manual verification of offers and payment flow is recommended.
Signal A: High traffic, news coverage, published contact details, no blacklist hits (positive signals).
Signal B: Third-party reputation aggregator (Scamadviser) reports a low trust score and WHOIS is redacted (negative signals).
Category Scores
Red Flags & Warnings
- WHOIS lacks public registrant and registrar fields and uses CSC name servers, which reduces transparency for direct ownership verification.
- Algorithmic low-trust score reported by a third‑party (Scamadviser) in aggregated checks; these systems can be noisy but should prompt manual review.
🔎 Detailed Checks & Analysis
Domain traffic & audience
Score: 90/100
Domain traffic & audience
"High traffic and page engagement (pages/visit ~3.94, time on site ~208s) reduce the likelihood this is a throwaway phishing domain."
Reason: Site shows substantial monthly visits (~168k) with a concentrated German audience, which matches an established national prepaid brand.
Technical infrastructure
Score: 92/100
Technical infrastructure
"Cloudflare + bot-management and correct SSL make it harder for opportunistic impersonators to serve content at scale."
Reason: Modern stack (Adobe AEM), Cloudflare CDN & bot management and valid TLS indicate professional hosting and operations.
Contact details & customer support
Score: 88/100
Contact details & customer support
"Presence of an official impressum and contact channels is typical for legitimate German businesses and required by law."
Reason: Site lists service email and a German phone number in the impressum/service pages, allowing customers to reach support directly.
Blacklist / phishing detection
Score: 95/100
Blacklist / phishing detection
"Clean results on major automated blacklists is a strong positive signal for user safety."
Reason: No hits on Google Safe Browsing and no crypto-scam blacklist entries were found in checks.
WHOIS transparency & ownership
Score: 45/100
WHOIS transparency & ownership
"CSC is commonly used for corporate privacy/registry services, but the lack of visible registrant metadata reduces traceability."
Reason: Public WHOIS fields are sparse (no registrar/creation date) and name servers point to CSC, which limits direct evidence of ownership.
Third-party reputation signals
Score: 60/100
Third-party reputation signals
"Automated low trust scores often arise from mismatched registration data or domain history; correlate with other signals before acting."
Reason: Algorithmic reputation services (eg. Scamadviser aggregated in some crawls) have flagged a low trust score; these can be noisy but require human checking.
Trademark and brand impersonation (USPTO)
Score: 70/100
Trademark and brand impersonation (USPTO)
"Brand may be protected in Germany/EU rather than the US, so USPTO empty results are not definitive."
Reason: No USPTO trademark conflicts were found for the query, but absence in USPTO does not rule out legitimate EU/DE branding.
Your Next Steps
-
1
Verify the brand page from the known parent retailer (Netto Marken-Discount) or Telefónica Deutschland corporate pages before entering payment details.
-
2
Use the site’s listed phone number (+49 number from the impressum) or service@nettokom.de to confirm offers and activation procedures.
-
3
If buying in-person is possible, prefer purchasing the SIM starter pack at a Netto store and activate via official channels.
-
4
Avoid transferring money outside the site's secure checkout; check the checkout URL is on nettokom.de and TLS is valid before paying.
-
5
If you see contradictory claims (e.g., vastly different price/bonus offers), contact consumer protection or your bank and consider reporting suspicious pages.
Evidence & Citations
-
SimilarWeb site analytics for nettokom.de (monthly visits, country breakdown)
Estimated monthly visits ~168k and Germany ~99.5% of traffic.
-
Site contact & impressum pages (email and phone shown)
service@nettokom.de and a phone number are present on the site.
-
SimilarTech / technology fingerprint for nettokom.de
Shows Adobe AEM, Cloudflare, HTTPS and other modern site tech.
-
WHOIS / DNS / SSL summary for nettokom.de
WHOIS has limited public registrant data; DNS uses CSC name servers; TLS valid until 2025-12-29.
-
News: NettoKOM promotions and product updates (sample)
Multiple articles show active marketing and product changes.
-
Aggregated reputation note mentioning a low Scamadviser score
Third-party aggregator cites Scamadviser low trust score; treat as algorithmic flag.
🕵🏻 Keep investigating
Run another instant due diligence scan on any website URL. Verify before you trust!
Spot fake SaaS login pages before handing over credentialsPhishing crews spin up carbon-copy login portals for CRM and finance tools, siphoning credentials before users realize t...
Read playbook → Analyze giveaway landing page phishingGiveaway pages entice with consoles or flights, then harvest card data and selfies “for verification.” ScamAI checks reg...
Read playbook →Community feedback
Not rated yet
0 reviews published
Leave a review
Reviews
No public reviews yet. Be the first to share your experience.