Notification and current-status evidence
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@dynadot.com.
The latest stored availability evidence still shows the domain reachable; 1 month has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
vaslosalco[.]co
“HABER PORTALIM: Son Dakika Haberler ile Türkiye’nin Haber Kaynağı”
vaslosalco.co — ढका हुआ · पहुंच योग्य. घोटाले का प्रकार: Credential Phishing. साक्ष्य सारांश: VirusTotal 20/91 (alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25, CRDF); URLQuery 5 alerts; Spamhaus DBL_SPAM; CF Radar malicious; cloaking observed; PhishDestroy score 100/100. रजिस्ट्रार: Dynadot.
मूल फॉरेंसिक रिकॉर्ड सुरक्षित रखने के लिए नीचे का विस्तृत PhishDestroy AI विश्लेषण अंग्रेज़ी में रखा गया है।
This domain, vaslosalco.co, is identified as a credential theft operation impersonating a legitimate Turkish news portal under the title 'HABER PORTALIM: Son Dakika Haberler ile Türkiye’nin Haber Kaynağı.' Analysis indicates the site was designed to harvest user credentials through deceptive login prompts, likely leveraging the trust associated with news media brands. No direct evidence of crypto drainer or payment skimming kits was observed, though credential theft remains the primary threat vector for downstream financial fraud or account takeovers. Infrastructure analysis reveals the domain was registered through Dynadot Inc on June 21, 2026, an anomalous future date suggesting potential registry manipulation or data obfuscation. It resolves to the IP address 217.60.195.178, hosted on AS209373 (SWISSNET LLC) in the Netherlands. Detection metrics show 18 out of 95 security vendors on VirusTotal flagged the domain as malicious, while it appears on a single security blocklist. The SSL certificate, issued by Let's Encrypt (YR2), provides minimal assurance, as it is commonly exploited by threat actors for short-lived campaigns. As of the latest assessment, vaslosalco.co has been taken offline, reducing immediate exposure risk. However, the domain's infrastructure—including its registrar and hosting provider—remains active, leaving open the possibility of redeployment under a similar scheme. Organizations are advised to monitor for related indicators, including the IP 217.60.195.178 and domains registered through Dynadot with future creation dates. Users should verify news portals via official sources and report suspicious login prompts to security teams for further analysis.
नेटवर्क सुरक्षा इंटेलिजेंस
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Hagezi Threat Feed | vaslosalco.co |
malicious | Sinkholed |
| Cloudflare DNS | vaslosalco.co |
malicious | Sinkholed |
| DNS4EU | vaslosalco.co |
malicious | Sinkholed |
| OpenDNS | vaslosalco.co |
phishing | Phishing Block |
| DigiCert UltraDNS | vaslosalco.co |
malicious | Sinkholed |
धमकी प्रतिक्रिया पाइपलाइन
सार्वजनिक ब्लॉकलिस्ट स्थिति
तकनीकें · 3 identified
Plesk is a web hosting and server data centre automation software with a control panel developed for Linux and Windows-based retail hosting service providers.
www.plesk.com 100% विश्वासNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 100% विश्वासवायरसटोटल विश्लेषण
साक्ष्य और बाहरी रिपोर्टें
PD-20260624-7EB74E Recipient: abuse@dynadot.com क्या आप इस साइट से प्रभावित हुए?
यदि आपने खाता क्रेडेंशियल, व्यक्तिगत या भुगतान जानकारी दर्ज की है, या इस डोमेन से कोई फ़ाइल डाउनलोड की है, तो तुरंत कार्रवाई करें। घटना की रिपोर्ट करने और अपनी सुरक्षा करने में आपकी सहायता के लिए नीचे संसाधन दिए गए हैं।
अपने स्थानीय अधिकारियों को रिपोर्ट करें
आधिकारिक साइबर अपराध संपर्क, या एक शिकायत ड्राफ्ट बनाएं → प्राप्त करने के लिए अपना देश चुनें।
किसी भी डोमेन की जाँच करें
संग्रहीत ब्लॉकलिस्ट, WHOIS, DNS और सार्वजनिक स्कैन साक्ष्य का उपयोग करके खतरे का विश्लेषण
अभी स्कैन करेंफ़िशिंग की रिपोर्ट करें
संदिग्ध डोमेन हमारे थ्रेट डेटाबेस में जमा करें — समुदाय की सुरक्षा करें
रिपोर्ट करेंसीधा खतरा फीड
हाल की फ़िशिंग रिपोर्टें और उपलब्धता में परिवर्तन देखे गए
निगरानी करेंजानकारी में रहें, सुरक्षित रहें
लाइव खतरों की निगरानी करें या यदि आपको लगता है कि यह एक गलत सकारात्मक है तो इस लिस्टिंग को चुनौती दें।