haftanin-noktasi[.]com[.]tr
“e-Devlet Kapısı”
haftanin-noktasi.com.tr — المحتوى غير متوفر. انتحال العلامة التجارية: Bddk; نوع الاحتيال: Generic Phishing. ملخص الأدلة: VirusTotal 25/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 4 alerts; URLScan malicious verdict; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
PhishDestroy identifies haftanin-noktasi.com.tr as a high-risk credential harvesting site masquerading as Turkey’s official e-Devlet portal. The domain is actively engaged in phishing aimed at harvesting Turkish citizens’ government login credentials.
This domain was flagged by 25 out of 95 VirusTotal security vendors, blocked by multiple industry blocklists including OpenPhish, PhishingArmy, and OISD, and is listed on three additional security blocklists. It was registered on January 17, 2026, and resolves to IP 159.223.219.193. The site holds a valid Let’s Encrypt SSL certificate, adding a false veneer of legitimacy. Google Safe Browsing categorizes it under SOCIAL_ENGINEERING, confirming its deceptive intent.
Organizations and end users should immediately block this domain at the network and DNS levels. Employees and citizens should be alerted to avoid interacting with any page resembling e-Devlet, especially those hosted on unfamiliar domains. If credentials were entered, users must change passwords immediately and enable multi-factor authentication where available. Report any access or suspicious activity to relevant cybersecurity teams or national CERTs.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | haftanin-noktasi.com.tr |
malicious | Sinkholed |
| OpenDNS | haftanin-noktasi.com.tr |
phishing | Phishing Block |
| Cloudflare DNS | haftanin-noktasi.com.tr |
malicious | Sinkholed |
| Hagezi Threat Feed | haftanin-noktasi.com.tr |
malicious | Sinkholed |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
التقنيات · 7 identified
Plesk is a web hosting and server data centre automation software with a control panel developed for Linux and Windows-based retail hosting service providers.
www.plesk.com ثقة 100٪Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org ثقة 100٪Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com ثقة 100٪jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.
jquery.com ثقة 100٪Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.
facebook.com ثقة 100٪تحليل VirusTotal
تحليل أداء الموقع
Google PageSpeed Insights — mobile performance audit of haftanin-noktasi.com.tr · checked May 2, 2026
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب