MALICIOUS — CRITICAL
casetun[.]com
The domain casetun.com, associated with a generic phishing operation, has a critical threat score of 100/100 and is currently down.
- VirusTotal
- 21/93
- Blocklists
- No stored match
- التوفر
- المحتوى غير متوفر · HTTP 502
Do not enter credentials, seed phrases, payment details, or personal information on this domain.
Jump to section
casetun.com — المحتوى غير متوفر (HTTP 502). ملخص الأدلة: VirusTotal 21/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, Certego, Cluster25); PhishDestroy score 100/100. مسجّل النطاق: Hello Internet.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
Evidence Analysis
casetun.com Phishing Intelligence Report - PhishDestroy
The domain casetun.com, associated with a generic phishing operation, has a critical threat score of 100/100 and is currently down.
The domain casetun.com, associated with a generic phishing operation, has a critical threat score of 100/100 and is currently down. It has been flagged as malicious by 21 out of 95 security vendors, including notable names like BitDefender and ESET, and is listed on one public blocklist. Google Safe Browsing has not flagged this domain, indicating a lack of broader awareness prior to its takedown.
Registered with Hello Internet Corp in the US, casetun.com was created on February 21, 2026, and was first detected on January 21, 2026. The hosting IP address is 77.105.161.50. The absence of brand-specific targeting suggests a more opportunistic scam approach.
Block the domain at the perimeter and submit a report to the registrar's abuse desk to mitigate any potential risks associated with this phishing operation.
Stored source results
Recorded verdicts and infrastructure observations for this domain.
نطاق تغطية البيانات13 recorded checks
مؤشرات الأمان
استخبارات أمن الشبكات
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
ICANN OVERSIGHT
الاعتماد وسياق RAA
الاعتماد وسياق RAA
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
تحليل VirusTotal
الأدلة المؤرشفة
الأدلة والتقارير الخارجيةIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.