whaleai[.]icu
“Bitcoin’de son durum ne? İşte değeri! - whale AI”
whaleai.icu — Contenuto non disponibile (HTTP 502). Simulazione del marchio: Bitcoin; Tipo di truffa: Brand Impersonation. Riepilogo delle prove: VirusTotal 0/93; PhishDestroy score 48/100.
L’analisi dettagliata di PhishDestroy AI resta in inglese per preservare il rapporto forense originale.
The domain whaleai.icu is flagged for brand impersonation, specifically targeting Bitcoin. As of the report date, July 24, 2026, the domain has been taken offline. The page title, 'Bitcoin’de son durum ne? İşte değeri! - whale AI,' suggests that the site may have been used to deceive users into believing they were accessing legitimate Bitcoin-related information or services.
The domain resolves to the IP address 172.67.191.113, which is hosted by Cloudflare, Inc. and located in the United States. The SSL certificate used was identified as WE1, which is a common indicator of a site attempting to appear more trustworthy to visitors. The domain was created on February 21, 2026, and has appeared on one security blocklist, indicating it has been flagged by security researchers for suspicious activity. The domain was also blocked by PhishDestroy, another indicator of potential malicious intent.
At the time of the scan, the domain was not flagged by any of the 93 vendors on VirusTotal, but this absence of detection does not conclusively prove the domain's safety. Security professionals and defenders should remain cautious and monitor the domain for any renewed activity. The exact content and nature of the site have not been fully analyzed, but the available evidence suggests a high risk of brand impersonation aimed at Bitcoin users. It is recommended to alert users to avoid interacting with this domain and to configure network defenses to block traffic to and from this domain.
Pipeline di risposta alle minacce
Stato della lista di blocco pubblica
Acquisizione salvata
Analisi dei domini
Dettagli tecniciDNS, SAN SSL, timestamp
ZONA SHORTDOT · PROVE PUBBLICHE
.icu
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
Analisi di VirusTotal
Dati e relazioni esterne
Questo sito ti ha influenzato in qualche modo?
Se hai inserito credenziali dell'account, informazioni personali o di pagamento oppure hai scaricato un file da questo dominio, agisci immediatamente. Di seguito sono riportate le risorse per aiutarti a segnalare l'incidente e proteggerti.
Segnalalo alle autorità locali
Seleziona il tuo Paese per ottenere contatti ufficiali del crimine informatico o creare una bozza di reclamo →.
Verifica qualsiasi dominio
Analisi delle minacce utilizzando blocklist archiviate, WHOIS, DNS e prove di scansione pubblica
Scansiona oraSegnala un tentativo di phishing
Segnala i domini sospetti al nostro database delle minacce — proteggi la comunità
SegnalaFeed in tempo reale sulle minacce
Segnalazioni recenti di phishing e modifiche osservate della disponibilità
MonitoraRimani informato, rimani al sicuro
Controlla le minacce in tempo reale oppure contesta questa segnalazione se ritieni che si tratti di un falso positivo