api66ledak[.]sbs
api66ledak.sbs için kimlik avı ve güvenlik kontrolü
“API66LEDAK : Evolusi Platform Digital Mendorong Pertumbuhan Kredit Secara Dra...”
api66ledak.sbs — İçerik kullanılamıyor (HTTP 502). Kanıt özeti: VirusTotal 14/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); URLQuery 2 alerts; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Kayıt kuruluşu: Namecheap.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies api66ledak.sbs as a live phishing portal masquerading as a financial-services platform claiming to offer dramatic credit-growth solutions through a digital API. The site’s deception hinges on a professionally crafted page title—“API66LEDAK : Evolusi Platform Digital Mendorong Pertumbuhan Kredit Secara Drastis”—which promises unrealistic credit-boost outcomes to trick visitors into entering sensitive personal or banking data. At least one victim has already reported the domain, and the page remains accessible, indicating an ongoing operation rather than a short-lived campaign.
This domain was flagged by PhishDestroy after it appeared on multiple industry blocklists and triggered detections at just 1 out of 95 VirusTotal security vendors. Technical analysis shows api66ledak.sbs resolves to 104.21.38.159, a hosting address linked to fraudulent financial services in the past. The domain was registered on April 29, 2026—merely weeks ago—through NAMECHEAP INC, a registrar frequently abused for bulletproof hosting and rapid domain churn. A Let’s Encrypt SSL certificate has been provisioned to lend an air of legitimacy, but the site’s content and title remain the primary red flags.
If you visited api66ledak.sbs, cease any interaction immediately and avoid entering personal data, passwords, or financial credentials. Disconnect from the site and clear your browser cache and cookies for that domain. Run a full antivirus scan and consider resetting passwords for critical accounts, especially banking or email services you may have accessed from the same device. Report the incident to your bank if you submitted payment details, and file a complaint with your national cybercrime unit or CERT. Monitor bank statements for unauthorized transactions and enable two-factor authentication on all sensitive accounts. Share the domain with your organization’s SOC or security provider so they can add it to internal blocklists and protect others from the same lure.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
SHORTDOT BÖLGESİ · KAMUYA AÇIK KANIT
.sbs
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 4 identified
AMP, originally created by Google, is an open-source HTML framework developed by the AMP open-source Project. AMP is designed to help webpages load faster.
www.amp.dev %100 güvenLightbox is small javascript library used to overlay images on top of the current page.
lokeshdhakar.com %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of api66ledak.sbs · checked May 1, 2026
Kanıtlar ve Dış Raporlar
PD-20260501-159516 Recipient: abuse@namecheap.com Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin