ailiquid[.]ai-cryptolist[.]net
“Suspected Misleading Website | Cloudflare”
Kanıt özeti
Analysis of ailiquid.ai-cryptolist.net shows a high‑risk brand‑impersonation campaign targeting Cloudflare. The domain was registered on 2025‑11‑05 through Key-Systems GmbH and is served from the IP address 104.21.68.219, which resolves to a Cloudflare, Inc. location in CA. DNS resolution uses Cloudflare’s authoritative nameservers melissa.ns.cloudflare.com and miles.ns.cloudflare.com, indicating the infrastructure is hosted on Cloudflare’s network. The site presents the page title "Suspected Misleading Website | Cloudflare" and returns HTTP 403, suggesting the content is intentionally restricted. TLS is provided by Google Trust Services under the WE1 certificate, a common legitimate certificate chain. Reputation data shows the domain is blocked by PhishDestroy, appears on a single security blocklist, and has a Gridinsoft trust score of 0/100. VirusTotal records a single detection out of 94 scanning vendors, confirming at least one security product flags the domain as malicious. The listed scam type is "Fake Exchange," implying the site may be used to lure victims into providing credentials or financial information under the pretense of a Cloudflare‑related service. Current evidence confirms the domain is active and still serving the misleading page. Defenders should add the domain and its resolved IP to blocklists, monitor traffic for connections to 104.21.68.219, and enforce strict outbound filtering for any Cloudflare‑related credential submissions. Continuous observation is recommended to detect any shift in hosting or content, as the underlying infrastructure can be rapidly repurposed.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Registration: ai-cryptolist.net
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For the registrable domain ai-cryptolist.net behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of ailiquid.ai-cryptolist.net · checked Apr 11, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin