creatorka[.]ai
creatorka.ai 피싱 및 보안 점검
“AI CREATORKA”
creatorka.ai — 마지막으로 알려진 활성 (HTTP 307). 사기 유형: Credential Phishing. 증거 요약: VT 6/91 (alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); URLQuery 2 alerts; URLScan no malicious verdict; GSB no flag; BL 0; PD 87/100. 등록기관: GoDaddy.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
creatorka.ai entered the PhishDestroy evidence set on Jun 24, 2026. The stored content classification is credential phishing. The assembled evidence scores 87/100 (high).
Two independent sources are positive: VirusTotal and URLQuery. VirusTotal recorded 6 detections among 91 engines: alphaMountain.ai, CRDF, Forcepoint ThreatSeeker, Fortinet, Gridinsoft, SOCRadar on Aug 5, 2026 at 02:13 UTC. URLQuery recorded 2 threat-system alerts on Jun 24, 2026 at 08:41 UTC. The evidence is not unanimous. The external blocklist snapshot contained no matches on Aug 7, 2026 at 18:20 UTC. Google Safe Browsing returned no flag on Jun 24, 2026 at 08:40 UTC. URLScan completed without a malicious verdict (score 0) on Jun 25, 2026 at 08:16 UTC.
HTTP 307 was recorded on Aug 7, 2026 at 10:12 UTC. Registration records for the domain list GoDaddy.com, LLC as the registrar and Nov 28, 2025 as the creation date. At collection time, the hostname resolved to 91.99.129.73 on AS24940 (HETZNER-AS Hetzner Online GmbH, DE). The associated network metadata labels the endpoint as AS24940 Hetzner Online GmbH in Nuremberg, DE. The stored server header is nginx/1.24.0 (Ubuntu). Captured page title: “AI CREATORKA”. DOM analysis completed on Jun 24, 2026 at 10:20 UTC; stored DOM score 78/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. IoC extraction completed on Jul 29, 2026 at 01:59 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists Let's Encrypt / E7 as the certificate issuer with validity through Aug 21, 2026; checked Jun 24, 2026 at 10:00 UTC.
No target brand has been confirmed from stored page content; hostname wording alone is not treated as brand evidence. Taken together, the page content and independent findings support classifying this hostname as credential phishing.
네트워크 보안 인텔리전스
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Nextron YARA rules | creatorka.ai/images/tild3035-6261-4564-a562-656633623836__2_______.gif |
malware | Detects files with GIF headers and format anomalies - which means that this image could be an obfuscated file of a different type |
| Nextron YARA rules | creatorka.ai/images/tild3237-3063-4165-b931-323439636565__1____ai_____.gif |
malware | Detects files with GIF headers and format anomalies - which means that this image could be an obfuscated file of a different type |
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 7 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org 신뢰도 100%Ubuntu is a free and open-source operating system on Linux for the enterprise server, desktop, cloud, and IoT.
www.ubuntu.com 신뢰도 100%React is an open-source JavaScript library for building user interfaces or UI components.
reactjs.org 신뢰도 100%Nginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org 신뢰도 100%Next.js is a React framework for developing single page Javascript applications.
nextjs.org 신뢰도 100%Google Analytics is a free web analytics service that tracks and reports website traffic.
google.com 신뢰도 100%VirusTotal 분석
보관된 증거
증거 및 외부 보고서
이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.