haberler2026[.]co
“İnternet Bankacılığı - Garanti”
haberler2026.co — 콘텐츠를 사용할 수 없음. 브랜드 사칭: Garanti; 사기 유형: Generic Phishing. 증거 요약: VirusTotal 23/94 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 4 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. 등록기관: Tucows.
원본 포렌식 기록을 보존하기 위해 아래의 상세 PhishDestroy AI 분석은 영어로 유지됩니다.
The domain haberler2026.co has been assessed as having an elevated risk level due to its involvement in generic phishing activities. This domain mimics the page title of a legitimate internet banking service, specifically 'İnternet Bankacılığı - Garanti,' which indicates an intent to deceive users and potentially steal sensitive information such as login credentials and financial data.
Analysis indicates that the domain was created on March 12, 2026, and is registered through Tucows Domains Inc. The domain resolves to the IP address 64.89.161.43, which is located in Luxembourg (LU) and is part of the AS205759 Ghosty Networks LLC. It appears on one security blocklist, and 23 out of 95 security vendors on VirusTotal have flagged this domain as malicious. The SSL certificate used by the domain is identified as R13, which may provide a false sense of security to unsuspecting users. The domain is currently offline, suggesting that it may have been taken down or is no longer active.
To mitigate the risks associated with this phishing domain, users are advised to verify the URL and SSL certificate of any internet banking site they visit, ensuring it matches the official domain of their financial institution. Security teams should monitor for any similar domain names and IP addresses that may be used in future campaigns. Additionally, implementing multi-factor authentication (MFA) can significantly reduce the likelihood of unauthorized access even if login credentials are compromised. Users should also be educated on the signs of phishing and encouraged to report any suspicious activities to their security team or financial institution.
네트워크 보안 인텔리전스
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | haberler2026.co |
malicious | Sinkholed |
| OpenDNS | haberler2026.co |
phishing | Phishing Block |
| DigiCert UltraDNS | haberler2026.co |
malicious | Sinkholed |
| DNS4EU | haberler2026.co |
malicious | Sinkholed |
위협 대응 Pipeline
공개 차단 목록 상태
사용 기술 · 9 identified
Server-side scripting language designed for web development.
Popular CSS framework for responsive, mobile-first web development.
Web infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comLegacy JavaScript library — DOM manipulation and AJAX helpers. Still widely present on older sites.
Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.
Conversion-tracking pixel by Meta — logs page views and custom events to Facebook/Instagram ad accounts.
www.facebook.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal 분석
사이트 성능 분석
Google PageSpeed Insights — mobile performance audit of haberler2026.co · checked Mar 15, 2026
증거 및 외부 보고서
PD-20260315-BB7E04 Recipient: compliance@tucows.com 이 사이트로 인해 영향을 받으셨나요?
계정 자격 증명, 개인 정보 또는 결제 정보를 입력했거나 이 도메인에서 파일을 다운로드한 경우 즉시 조치를 취하세요. 다음은 사건을 신고하고 자신을 보호하는 데 도움이 되는 리소스입니다.
지역 당국에 신고하십시오
공식 사이버 범죄 연락처 또는 불만사항 초안 작성 →를 받으려면 국가를 선택하세요.