الانتقال إلى تقرير الأمان
⚠️
تم الإبلاغ عن هذا النطاق باعتباره ضارًّا
محركات الأمان التي تبلغ عن اكتشاف: 6. توخي الحذر الشديد — لا تدخل بيانات الاعتماد أو المعلومات الشخصية.
أمن المجال وذكاء التهديدات

tr[.]merittking-tr-aktif[.]icu

“Meritking – Meritking Güncel Giriş Adresi 2026 - Meritking Orjinal”

حكم التهديد حرجة 98/100 درجة الأدلة
التوفر مغطى بعباءة · يمكن الوصول إليه تمت ملاحظة إمكانية الوصول من خلال عمليات فحص إخفاء الهوية
اكتشافات VirusTotal: 6/91 Spamhaus DBL: DBL_PHISH نوع الاحتيال: Credential Phishing آخر نشاط معروف
11/06/2026 1 Report Sent
ملخص التقرير

tr.merittking-tr-aktif.icu — مغطى بعباءة · يمكن الوصول إليه (HTTP 502). نوع الاحتيال: Credential Phishing. ملخص الأدلة: VirusTotal 6/91 (CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, PhishFort); Spamhaus DBL_PHISH; cloaking observed; PhishDestroy score 98/100. مسجّل النطاق: Dynadot.

يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.

ملخص الأدلة
حرج
المرجع
8F72B453
الدرجة
98/100

The domain tr.merittking-tr-aktif.icu is identified as a phishing infrastructure specifically designed to impersonate Meritking, a recognized brand, with the intent of harvesting user login credentials. Analysis confirms this as a credential theft operation, presenting a fraudulent login portal under the guise of an official entry point for the service. The page title, "Meritking – Meritking Güncel Giriş Adresi 2026 - Meritking Orjinal," explicitly mimics legitimate Meritking branding to deceive users into submitting sensitive information. Infrastructure analysis reveals the domain was registered through Dynadot Inc on June 11, 2026, and resolves to the IP address 130.12.180.239. It is flagged by 6 of 95 security vendors on VirusTotal, indicating detection by multiple threat intelligence sources. The domain appears on two security blocklists, including PhishDestroy and OISD, and holds a Gridinsoft trust score of 0/100. The SSL certificate is issued by ZeroSSL, a common choice for low-reputation or malicious domains due to its accessibility. As of the latest assessment, tr.merittking-tr-aktif.icu has been taken offline, reducing immediate risk to users. However, organizations and individuals are advised to block the domain and its associated IP (130.12.180.239) at the network level to prevent potential re-emergence. Users who may have interacted with the site should reset credentials immediately and monitor accounts for unauthorized activity. Security teams should review logs for connections to the domain or IP and update detection rules to include this infrastructure in future threat hunting efforts.

VirusTotal
VirusTotal
6 det.
شهادة TLS
منتهية الصلاحية أو غير متحقق منها -1323d
العمر
2 mo New
الحالة المرصودة
مغطى بعباءة · يمكن الوصول إليه 502
PhishDestroy
قائمة الإتلاف
مُدرج
Reports Sent
1
نطاق تغطية البيانات VirusTotal 6 / 91 URLQuery checked — no detections recorded PhishStats لم يتم التحقق منها OTX no community references رادار CF scan completed URLScan capture التقرير المخزن URLScan verdict اكتمل التحليل حجب عناوين DNS لم يتم التحقق منها TLS منتهية الصلاحية أو غير متحقق منها WHOIS 2 mo old لقطة شاشة 3 captures · 3 sources سلسلة إعادة التوجيه لم يتم التحقيق فيها
استخبارات أمن الشبكات
SSL Certificate Invalid
SSL certificate is invalid or expired. Issuer: ZeroSSL

مسار الاستجابة للتهديدات Pipeline

الاكتشاف
Checks
Reports
التوفر
11/12
Sent Report Recorded
Stored sent-report record for registrar Dynadot Inc, hosting provider, 2 abuse contacts
abuse@virtualine.orgabuse@dynadot.com
11/06/2026

حالة قوائم الحظر العامة

لقطة محفوظة

عنوان الصفحة
Meritking – Meritking Güncel Giriş Adresi 2026 - Meritking Orjinal
شهادة TLS
منتهية الصلاحية أو غير متحقق منها · صادرة عن ZeroSSL

معلومات النطاق

النطاق
URLScan Verdict اكتمل التحليل score 0 report ↗
الخادم / ASN ASTG · AS202412 Omegatech LTD
سمعة عنوان IP abuse score 7/100 3 reports checked 13/07/2026
Registrar (base domain) Dynadot US(US)
جهة الإبلاغ عن إساءة الاستخدامabuse@virtualine.org, abuse@dynadot.com
البحث في قاعدة بيانات WHOISICANN RDAP لـ merittking-tr-aktif.icu →
عنوان IP 130.12.180.239 NL
الموقع الجغرافيNL Amsterdam, NL
الشبكةAS202412 · Virtualine Technologies
Registration (base domain)merittking-tr-aktif.icu · تم إنشاؤه 11/06/2026 (70d · New) Expires 10/06/2027
حالة HTTP502 Error
Cloaking Cloaking Detected Status split · score 1/6
transient_502: raw=transient_502; http=502; via=http_proxy
checked 19/08/2026
Elapsed Since First Report 5 days
ما الذي نحتسبه Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: مغطى بعباءة · يمكن الوصول إليه.
ما يحتويه كل تقرير قد تشير سجلات التقارير الصادرة المخزنة إلى الأدلة المتاحة في ذلك الوقت، مثل أحكام البائعين أو بيانات التسجيل أو تفاصيل الاستضافة أو التصنيفات أو لقطات الشاشة. لا تستنتج هذه الصفحة الحمولة الدقيقة التي تم تسليمها أو استلامها أو إقرارها أو الإجراء الذي اتخذه المستلم.
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
تاريخ أول اكتشاف11/06/2026
IoC Extractionscanned 01/08/20260 wallet · 0 Telegram IoCs
Submitted URLhttp://tr.merittking-tr-aktif.icu/
خوادم الأسماءainsley.ns.cloudflare.comguy.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 11/06/2026scanned 12/06/2026
TLS SAN Domainsmerittking-tr-aktif.icu
Case ID
نطاق SHORTDOT · أدلة عامة .icu

ShortDot zone evidence

The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.

ShortDot SA · Luxembourg 7 مناطق · أدلة المناطق الكاملة تُحدّث يوميًا افتح مستودع أدلة ShortDot
ICANN OVERSIGHT Registration: merittking-tr-aktif.icu

الاعتماد وسياق RAA

Registrar accreditation and DNS abuse obligations

For the registrable domain merittking-tr-aktif.icu behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft لا يُرسل أي شيء تلقائياً.
الإبلاغ عن هذا النطاق أرسل الأدلة وساعد في حماية الآخرين

تحليل VirusTotal

6 / قام موردو الأمان 91 بوضع علامة على هذا المجال
View on VT
Last analyzed
CRDF
Forcepoint ThreatSeeker
Fortinet
Gridinsoft
PhishFort
SOCRadar

الأدلة والتقارير الخارجية

Third-Party Detection — ChainAbuse
1 report filed for tr.merittking-tr-aktif.icu · category: Impersonation · source checked
Flagged by automated brand-abuse detection on Jun 11, 2026 — automated submission, not a user testimony. Source: ChainAbuse (TRM Labs).
Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260611-52FBF5 Recipient: abuse@virtualine.org
Page title stored with report: Meritking – Meritking Güncel Giriş Adresi 2026 - Meritking Orjinal
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 101.4 KB
نظام أسماء النطاقات (DNS) والشبكات
تحسين محركات البحث (SEO) والنطاقات

هل تأثرت بهذا الموقع؟

If credentials were compromised, report immediately. Do not engage with recovery scammers.

إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.

اليوروبول
ابحث عن قناة التقارير الرسمية لبلدك في الاتحاد الأوروبي
National police directory
احذروا من المحتالين الذين يزعمون أنهم يساعدون في استرداد الأموال! قد يتصل المجرمون بالضحايا مرة أخرى بينما يتظاهرون بأنهم محققون أو محامون أو وكلاء استرداد. لا تدفع رسومًا مقدمة أو تشارك بيانات الاعتماد. تعرف على المزيد حول الاحتيال في مجال التعافي →

أبلغ السلطات المحلية

حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.

دليل 97 دولة
المسودة بمساعدة الذكاء الاصطناعي - تتم معالجة تفاصيل الحادث بواسطة موفر الذكاء الاصطناعي قم بمراجعتها وتقديمها بنفسك

تحقق من أي نطاق

تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة

امسح الآن

الإبلاغ عن محاولة تصيد احتيالي

أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع

إبلاغ

تحديثات فورية حول التهديدات

تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة

مراقبة

ابقَ على اطلاع، وابقَ آمنًا

راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب

تحديثات فورية حول التهديدات الاعتراض على هذا الإعلان
HTML · IFRAME

تضمين هذا التقرير

شارك هذه المعلومات الاستخباراتية المتعلقة بالتهديدات على موقعك الإلكتروني أو مدونتك

embed.html
<iframe
  src="https://phishdestroy.io/ar/embed/domain/tr.merittking-tr-aktif.icu"
  title="PhishDestroy threat report for tr.merittking-tr-aktif.icu"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

رسالة شكر صادقة جداً

منشئ مسودة ساخرة

المستلم
سياق الرسوم

مسودة ساخرة. أرقام الرسوم تقديرية، ولا ندّعي نسبتها بدقة إلى هذا النطاق.