Lompat ke laporan keamanan
Checked 09/08/2026 Ref C7341223

MALICIOUS — CRITICAL

Pemeriksaan phishing dan keamanan guncelapp.vip

guncelapp[.]vip

Analysis of guncelapp.vip indicates active phishing infrastructure as of July 19, 2026.

72/100 evidence score · Critical
VirusTotal
4/91
Blocklists
No stored match
Ketersediaan
Terakhir diketahui aktif · HTTP 301
No capture stored

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Domain ini telah ditandai sebagai berbahaya
Mesin keamanan melaporkan deteksi: 4. Berhati-hatilah — jangan memasukkan kredensial atau informasi pribadi.
Jump to section
Ringkasan laporan

guncelapp.vip — Terakhir diketahui aktif (HTTP 301). Ringkasan bukti: VirusTotal 4/91 (alphaMountain.ai, Fortinet, Gridinsoft, SOCRadar); Spamhaus DBL_SPAM; PhishDestroy score 72/100. Registrar: NiceNIC.

Analisis terperinci PhishDestroy AI di bawah tetap berbahasa Inggris untuk menjaga catatan forensik asli.

Evidence Analysis

Ref C7341223

Analysis of guncelapp.vip indicates active phishing infrastructure as of July 19, 2026. The domain resolves to the Cloudflare edge address 104.21.95.10, which is hosted in the United States under Cloudflare, Inc. The authoritative nameservers are martha.ns.cloudflare.com and rex.ns.cloudflare.com, confirming Cloudflare’s DNS service usage. TLS termination is provided by a Google Trust Services / WE1 certificate, indicating a valid SSL chain despite the malicious intent. HTTP requests receive a 301 redirect, and the current page title reports a generic server error "520: Web server is returning an unknown error," suggesting the site may be dynamically altered or temporarily inaccessible. Registration details show the domain was created through NICENIC INTERNATIONAL GROUP CO., LIMITED. The domain appears on one public security blocklist and is listed as blocked by PhishDestroy. VirusTotal scans report four detections out of ninety‑one vendors, reinforcing the malicious classification. While the exact phishing payload, target brand, or lure content has not been publicly disclosed, the combination of Cloudflare hosting, active blocklisting, and multiple vendor detections provides sufficient evidence to treat the site as a confirmed phishing vector. Defensive recommendations include adding the domain to outbound web filters, updating intrusion‑prevention signatures to block traffic to 104.21.95.10, and monitoring for any related C2 patterns that may emerge from the same Cloudflare edge network.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
4 det.
Sertifikat TLS
Google Trust Services
Status terpantau
Terakhir diketahui aktif 301
PhishDestroy
Daftar Hapus
Terdaftar
Cakupan data12 recorded checks
VirusTotal 4 / 91 URLQuery tidak diperiksa PhishStats tidak diperiksa OTX no community references CF Radar scan completed URLScan capture not submitted URLScan verdict putusan tidak tersedia Pemblokiran DNS tidak diperiksa TLS valid certificate, 80d WHOIS not parsed Tangkapan layar belum terekam Rantai pengalihan tidak diselidiki
Intelijen Keamanan Jaringan Registrar context
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation

Alur Tanggapan Ancaman Pipeline

Penemuan
Checks
Reports
Ketersediaan
7/9
Ancaman Telah Diterima
guncelapp.vip telah terdeteksi dan dimasukkan ke dalam antrian untuk analisis menyeluruh
13/07/2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
4/91 recorded on VirusTotal
26/07/2026
Google Safe Browsing
19/07/2026
Registrar Context: NiceNIC
Separate registrar research is available. Registrar association is contextual and is not scored as an independent detection.
Technical Analysis Recorded
Laporan tersebut berisi teknologi tersimpan atau hasil analisis forensik.
09/08/2026
Complaint Draft Available
Tidak ada penyerahan yang dicatat. Anda dapat membuat draf, meninjaunya, dan menyerahkannya sendiri ke otoritas yang sesuai.
Daftar yang Dihapus Telah Dipublikasikan
13/07/2026
Monitoring Continues
Domain tetap dapat dijangkau atau aksesnya dibatasi; pemeriksaan di masa depan dapat memperbarui pengamatan ini.

Status Daftar Blokir Publik

Intelijen Domain

Domain
Server / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Reputasi Edge-IP tidak dikaitkan dengan domain ini.
Alamat IP 104.21.95.10 CDN
LokasiCA Toronto, CA
JaringanAS13335 · Cloudflare, Inc.
IP asal tersembunyi di balik proksi CDN. Hasil IP terbalik untuk alamat edge berisi penyewa yang tidak terkait; menemukan asal memerlukan DNS pasif atau data transparansi sertifikat.
Status HTTP301 Moved Permanently
Rincian teknisDNS, SAN SSL, cap waktu
Pertama Kali Terdeteksi13/07/2026
Server namarex.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 10/07/2026scanned 19/07/2026
ICANN OVERSIGHT

Akreditasi dan konteks RAA

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Tidak ada yang dikirim secara otomatis.

Latest Classified Outcome 2026-08-09 02:45:37 UTC

Primary outcome Redirecting reason: HTTP redirect observed 80% confidence
Attribution source: Current Http Probe
Evidence layers Availability: Redirecting Content: Unknown DNS: Resolved Registration: Active
Latest HTTP observation Redirecting HTTP redirect observed 80% 2026-08-09 02:45:37 UTC
RDAP registration Aktif NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 RDAP HTTP 200 source: Rdap Status Collector clientDeleteProhibitedclientTransferProhibitedServertransferprohibited expires 2027-07-10 16:50:39 UTC checked 2026-08-08 04:38:44 UTC
Observed timeline last reachable: 2026-08-09 02:45:37 UTC
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.
Teknologi · 2 identified
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com Keyakinan 100%
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org Keyakinan 100%
Detected via Cloudflare Radar · Wappalyzer engine
Laporkan Domain Ini Kirimkan bukti & bantu lindungi orang lain

Analisis VirusTotal

4 / Vendor keamanan 91 menandai domain ini
View on VT
Last analyzed First positive detection Previous stored snapshot: 4 detections
alphaMountain.ai
Fortinet
Gridinsoft
SOCRadar
Analisis Performa Situs

Google PageSpeed Insights — mobile performance audit of guncelapp.vip · checked Jul 19, 2026

100
Good
Performance
FCP
0.76s
First Contentful Paint
LCP
0.76s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
0.76s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Bukti & Laporan EksternalIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Jika Anda memasukkan kredensial akun, informasi pribadi atau pembayaran, atau mengunduh file dari domain ini, segera ambil tindakan. Di bawah ini adalah sumber daya untuk membantu Anda melaporkan insiden tersebut dan melindungi diri Anda sendiri.

Europol
Temukan saluran pelaporan resmi untuk negara UE Anda
National police directory
Waspadalah terhadap penipu yang mengatasnamakan pemulihan! Penjahat dapat menghubungi korban lagi sambil berpura-pura menjadi penyelidik, pengacara, atau agen pemulihan. Jangan membayar biaya di muka atau membagikan kredensial. Pelajari lebih lanjut tentang penipuan dalam proses pemulihan →

Laporkan kepada Pihak Berwenang di Daerah Anda

Pilih negara Anda untuk mendapatkan kontak resmi kejahatan dunia maya, atau membuat draf pengaduan →.

Direktori 97 negara
Draf yang dibantu AI — detail insiden diproses oleh penyedia AI Tinjau dan kirimkan sendiri
Sematkan Laporan IniRead-only HTML widget
HTML · IFRAME

Sematkan Laporan Ini

Bagikan informasi ancaman ini di situs web atau blog Anda

embed.html
<iframe
  src="https://phishdestroy.io/id/embed/domain/guncelapp.vip"
  title="PhishDestroy threat report for guncelapp.vip"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Surat Terima Kasih yang Sangat Tulus

Pembuat draf satir

Penerima
Konteks biaya

Draf satir. Angka biaya merupakan perkiraan; tidak diklaim bahwa angka tersebut secara tepat terkait dengan domain ini.