सुरक्षा रिपोर्ट पर जाएँ
⚠️
इस डोमेन को दुर्भावनापूर्ण के रूप में चिह्नित किया गया है।
सुरक्षा इंजन एक पहचान की रिपोर्ट कर रहे हैं: 22। अत्यधिक सावधानी बरतें - क्रेडेंशियल या व्यक्तिगत जानकारी दर्ज न करें।
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 6 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
6 months
Reports sent
1
Current status
Observed active at latest stored check
डोमेन सुरक्षा और ख़तरे की आसूचना

onwin-girisleri[.]net

“Barclays.Net”

धमकी भरा फैसला गंभीर 95/100 साक्ष्य स्कोर
उपलब्धता असत्यापित वर्तमान पहुंच योग्यता असत्यापित है
वायरस का कुल पता लगाना: 22/93 Spamhaus DBL: DBL_PHISH URLQuery threat systems: 5 alerts ब्रांड प्रतिरूपण: Barclays
OTX: 1 ref 13/02/2026 Barclays 1 Report Sent CDN

साक्ष्य सारांश

आलोचनात्मक
Evidence score
95/100

The domain onwin-girisleri.net has been identified as a brand impersonation threat specifically targeting Barclays, a financial services institution. This domain was operational as a phishing site designed to deceive users into disclosing sensitive credentials or financial information under the guise of legitimate Barclays services. As of the latest assessment, the domain has been taken offline, though prior activity and infrastructure analysis confirm its malicious intent. Analysis of onwin-girisleri.net reveals it was flagged by 22 of 95 security vendors on VirusTotal, indicating broad detection of its phishing-related activity. The domain was registered through Internet Domain Service BS Corp. on August 25, 2025, and resolved to the IP address 91.92.240.61, hosted under AS202412 (Omegatech LTD) in Germany. It appears on one security blocklist and was previously blocked by network-level protections. The SSL certificate was issued by Let's Encrypt (R13), a common tactic among threat actors to mimic legitimacy. The page title, 'Sorry, the website has been stopped,' suggests recent takedown or disruption of its phishing operations. Current status indicates the domain is offline, though the infrastructure remains a potential vector for future malicious activity. Organizations and users are advised to block the domain and its associated IP (91.92.240.61) at the network perimeter. Financial institutions should monitor for related impersonation attempts and educate users on recognizing phishing indicators, such as unexpected domain names or SSL certificates from non-corporate issuers. Continuous monitoring of newly registered domains with similar naming patterns (e.g., 'girisleri') is recommended to preempt further brand impersonation threats.

भेजे गए प्रमाण का स्नैपशॉट

भेजा गया
लेज़र रिकॉर्ड
1
केस आईडी
PD-20260214-FA6BD7
कैप्चर किए गए पेज का शीर्षक
Sorry, the website has been stopped
PDF दस्तावेज़
PDF प्रमाण
प्रमाण का पूरा पाठ
Policy Violations:
Acceptable Use Policy (AUP): The domain onwin-girisleri.net is engaged in phishing activities, which directly contravenes the prohibition against illegal activities and fraud as outlined in your AUP.
Terms of Service (TOS): The use of this domain for deceptive practices constitutes a violation of your TOS, which reserves the right to suspend or terminate services for such infractions.
Applicable Laws (IS):
Act on Electronic Communications (No. 81/2003): This law prohibits the use of electronic communications for fraudulent purposes, including phishing.
Criminal Code of Iceland (No. 19/1940): Sections 233 and 234 address fraud and deception, making it illegal to mislead individuals for financial gain.
Regulatory Note: Non-compliance with your AUP and TOS, as well as applicable Icelandic laws, may expose your organization to legal liabilities and regulatory actions. Immediate action is recommended to mitigate these risks.
VirusTotal
VirusTotal
22 det.
URLQuery
यूआरएलक्वेरी
5 threat alerts
OTX references
सीएफ रडार
दुर्भावनापूर्ण
TLS प्रमाणपत्र
समाप्त या असत्यापित -65d
आयु
12 mo
देखी गई स्थिति
असत्यापित
PhishDestroy
विनाश सूची
सूचीबद्ध
Reports Sent
1

Data Coverage

VirusTotal 22 / 93 यूआरएलक्वेरी 5 threat-system alerts फ़िशस्टैट्स checked — no match recorded ओटीएक्स 1 community reference सीएफ रडार provider verdict: malicious URLScan capture संग्रहित रिपोर्ट URLScan verdict malicious डीएनएस ब्लॉक जाँच नहीं की गई TLS समाप्त या असत्यापित कौन है 12 mo old स्क्रीनशॉट 3 captures · 3 sources चेन पुनर्निर्देशित करें जांच नहीं की गई
नेटवर्क सुरक्षा इंटेलिजेंस
Threat Detection Systems 5 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS onwin-girisleri.net malicious Sinkholed
OpenDNS onwin-girisleri.net phishing Phishing Block
DigiCert UltraDNS onwin-girisleri.net malicious Sinkholed
DNS4EU onwin-girisleri.net malicious Sinkholed
Quad9 DNS onwin-girisleri.net malicious Sinkholed
CF Cloudflare Radar Verdict दुर्भावनापूर्ण
Security threats Phishing Phishing

धमकी प्रतिक्रिया पाइपलाइन

खोज
Checks
Reports
उपलब्धता
13/14

ब्लॉकलिस्ट कवरेज

10 निगरानी वाले बाहरी स्रोत · संग्रहीत स्नैपशॉट 13/08/2026

10 निगरानी वाले बाहरी स्रोत कोई मिलान नहीं

पहचान समयरेखा

  1. डोमेन स्थिति

    पहुँच योग्य → पहुँच योग्य नहीं

  2. Cloudflare Radar

    Cloudflare Radar स्कैन संग्रहीत · स्कैन खोलें

  3. डोमेन स्थिति

    पहुँच योग्य नहीं → पहुँच योग्य

सहेजा गया कैप्चर

पेज शीर्षक
Barclays.Net
TLS प्रमाणपत्र
समाप्त या असत्यापित · जारीकर्ता Let's Encrypt / R13

डोमेन इंटेलिजेंस

डोमेन
URLScan Verdict दुर्भावनापूर्ण score 100 Phishing brand: Barclays report ↗
सर्वर / ASN nginx · AS202412 OMEGATECH-AS Omegatech LTD, SC
IP Context CDN shared edge origin IP hidden एज-आईपी प्रतिष्ठा इस डोमेन के लिए जिम्मेदार नहीं है।
रजिस्ट्रार Internet Domain Servic… IS(IS)
दुरुपयोग संपर्कabuse@internet.bs, abuse@omegatech.sc
IP पता 91.92.240.61 CDN
भौगोलिक स्थानDE Frankfurt am Main, DE
नेटवर्कAS202412 · Omegatech LTD
रिवर्स IPviewdns.info → rapiddns.io →
मूल आईपी सीडीएन प्रॉक्सी के पीछे छिपा हुआ है। किनारे के पते के लिए रिवर्स-आईपी परिणामों में असंबंधित किरायेदार शामिल हैं; मूल का पता लगाने के लिए निष्क्रिय DNS या प्रमाणपत्र-पारदर्शिता डेटा की आवश्यकता होती है।
पंजीकरणनिर्मित 25/08/2025 (352d) Expires 25/08/2026
Elapsed Since First Report 15 days
हम क्या मापते हैं Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: असत्यापित.
प्रत्येक रिपोर्ट में क्या शामिल है संग्रहीत आउटगोइंग-रिपोर्ट रिकॉर्ड उस समय उपलब्ध साक्ष्य का संदर्भ दे सकते हैं, जैसे विक्रेता के फैसले, पंजीकरण डेटा, होस्टिंग विवरण, वर्गीकरण, या स्क्रीनशॉट। यह पृष्ठ किसी प्राप्तकर्ता द्वारा वितरित सटीक पेलोड, रसीद, पावती या कार्रवाई का अनुमान नहीं लगाता है।
तकनीकी विवरणDNS, TLS नाम और समय-मुद्राएँ
पहली बार पता चला13/02/2026
DOM Analysisanalyzed 27/07/2026DOM analysis score 0/100
Submitted URLhttp://onwin-girisleri.net/
नेमसर्वरsummer.ns.cloudflare.com
TLS फिंगरप्रिंट
TLS अवलोकन11/03/2026 से मान्य15/03/2026 को स्कैन किया गया
TLS सब्जेक्ट वैकल्पिक नामjollibee-omn.comwww.jollibee-omn.com
ICANN OVERSIGHT

प्रत्यायन और आरएए संदर्भ

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

मान्यता एक अनुबंध है, सुरक्षा की मुहर नहीं। ICANN शुल्क सत्यापित करें RAA §3.18 पढ़ें PHISHDESTROY INVESTIGATIONICANN funding, contracts, and DNS abuse oversight
Accountability draft कुछ भी अपने आप नहीं भेजा जाता।
इस डोमेन की रिपोर्ट करें सबूत जमा करें और दूसरों की सुरक्षा में मदद करें

वायरसटोटल विश्लेषण

22 / 93 सुरक्षा विक्रेताओं ने इस डोमेन को चिह्नित किया
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
BitDefender
Cluster25
साइरेडार
ईएसईटी
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
कास्परस्की
Lionic
MalwareURL
Mimecast
नेटक्राफ्ट
Seclookup
SOCRadar
सोफोस
Trustwave
VIPRE
वेबरूट

क्या आप इस साइट से प्रभावित हुए?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।

यूरोपोल
अपने ईयू देश के लिए आधिकारिक रिपोर्टिंग चैनल ढूंढें
National police directory
रिकवरी ठगों से सावधान रहें! अपराधी जांचकर्ता, वकील या रिकवरी एजेंट होने का नाटक करते हुए पीड़ितों से दोबारा संपर्क कर सकते हैं। अग्रिम शुल्क का भुगतान न करें या क्रेडेंशियल साझा न करें। रिकवरी धोखाधड़ी के बारे में और जानें →

अपने स्थानीय अधिकारियों को रिपोर्ट करें

आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।

97-देश निर्देशिका
एआई-सहायता प्राप्त ड्राफ्ट - घटना विवरण एआई प्रदाता द्वारा संसाधित किया जाता है इसकी स्वयं समीक्षा करें और सबमिट करें

किसी भी डोमेन की जाँच करें

संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण

अभी स्कैन करें

फ़िशिंग की रिपोर्ट करें

संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें

रिपोर्ट करें

सीधा खतरा फीड

हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए

निगरानी करें

जानकारी में रहें, सुरक्षित रहें

लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।

सीधा खतरा फीड इस लिस्टिंग के खिलाफ अपील करें

बाहरी उपकरण

HTML · IFRAME

इस रिपोर्ट को एम्बेड करें

इस थ्रेट इंटेलिजेंस को अपनी वेबसाइट या ब्लॉग पर साझा करें।

embed.html
<iframe
  src="https://phishdestroy.io/hi/embed/domain/onwin-girisleri.net"
  title="PhishDestroy threat report for onwin-girisleri.net"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

एक अत्यंत सच्चा धन्यवाद-पत्र

व्यंग्यात्मक मसौदा जनरेटर

प्राप्तकर्ता
शुल्क संदर्भ

यह व्यंग्यात्मक मसौदा है। शुल्क के आंकड़े अनुमान हैं; इन्हें इस डोमेन से ठीक-ठीक जोड़ने का दावा नहीं किया जाता।