vormasia[.]sbs
“Giriş Yap”
vormasia.sbs — المحتوى غير متوفر (HTTP 502). انتحال العلامة التجارية: Binance; نوع الاحتيال: Crypto Scam. ملخص الأدلة: VirusTotal 18/95 (alphaMountain.ai, BitDefender, Certego, CRDF, CyRadar); URLQuery 8 alerts; URLScan malicious verdict; PhishDestroy score 95/100.
يبقى تحليل PhishDestroy AI المفصل أدناه باللغة الإنجليزية للحفاظ على السجل الجنائي الرقمي الأصلي.
This site, vormasia.sbs, was configured to impersonate the Binance brand with a page titled "Giriş Yap," indicating it was a phishing portal designed to harvest cryptocurrency account credentials. As a cryptocurrency scam, it posed a direct threat to users by attempting to steal login information, which could lead to unauthorized access and financial loss.
Technical analysis confirms malicious activity. VirusTotal flagged the domain with 18 detections out of 95 security vendors. The domain was created on 2026-02-21 and hosted on IP address 46.151.182.165, located in Luxembourg (LU), under AS205759 Ghosty Networks LLC. It used an R13 SSL certificate. The domain was flagged by multiple security vendors including alphaMountain.ai, BitDefender, Certego, CRDF, and CyRadar, and appeared on 1 blocklist.
The site is currently reported as DOWN or OFFLINE, indicating it is no longer accessible. Based on the DOM risk score of 73, this domain represented a significant threat while active, exhibiting high-risk indicators consistent with a phishing and cryptocurrency scam operation.
استخبارات أمن الشبكات
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| OpenPhish | vormasia.sbs |
phishing | Phishing - Binance |
| Cloudflare DNS | vormasia.sbs |
malicious | Sinkholed |
| OpenDNS | vormasia.sbs |
phishing | Phishing Block |
| DigiCert UltraDNS | vormasia.sbs |
malicious | Sinkholed |
| Hagezi Threat Feed | vormasia.sbs |
malicious | Sinkholed |
| DNS0 Zero | vormasia.sbs |
malicious | Sinkholed |
| Quad9 DNS | vormasia.sbs |
malicious | Sinkholed |
| OpenPhish | vormasia.sbs/ |
phishing | Phishing - Binance |
مسار الاستجابة للتهديدات Pipeline
حالة قوائم الحظر العامة
لقطة محفوظة
معلومات النطاق
التفاصيل الفنيةDNS، أسماء المجال البديلة (SAN) في بروتوكول SSL، الطوابع الزمنية
نطاق SHORTDOT · أدلة عامة
.sbs
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
تحليل VirusTotal
الأدلة والتقارير الخارجية
هل تأثرت بهذا الموقع؟
إذا أدخلت بيانات اعتماد الحساب أو المعلومات الشخصية أو معلومات الدفع أو قمت بتنزيل ملف من هذا النطاق، فاتخذ إجراءً فوريًا. فيما يلي موارد لمساعدتك في الإبلاغ عن الحادث وحماية نفسك.
أبلغ السلطات المحلية
حدد بلدك للحصول على الاتصالات الرسمية المتعلقة بالجرائم الإلكترونية أو إنشاء مسودة شكوى →.
تحقق من أي نطاق
تحليل التهديدات باستخدام قائمة الحظر المخزنة، وWHOIS، وDNS، وأدلة الفحص العامة
امسح الآنالإبلاغ عن محاولة تصيد احتيالي
أرسل النطاقات المشبوهة إلى قاعدة بيانات التهديدات الخاصة بنا — ساهم في حماية المجتمع
إبلاغتحديثات فورية حول التهديدات
تقارير التصيد الاحتيالي الأخيرة وتغييرات التوفر الملحوظة
مراقبةابقَ على اطلاع، وابقَ آمنًا
راقب التهديدات في الوقت الفعلي أو اعترض على هذا الإدراج إذا كنت تعتقد أنه إنذار كاذب