app[.]arbtirum[.]sbs
“404 Not Found”
app.arbtirum.sbs — Doğrulanmamış. Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 13/91 (ChainPatrol, alphaMountain.ai, BitDefender, Chong Lua Dao, CRDF); Spamhaus DBL_PHISH; PhishDestroy score 89/100. Kayıt kuruluşu: NiceNIC.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies app.arbtirum.sbs as a live credential-harvesting domain designed to mimic a legitimate application portal in order to trick users into surrendering usernames and passwords. This site poses an immediate risk to anyone who receives a link or sees the domain in messages, search results, or pop-ups promising quick app access. Because it remains active and is not yet flagged by most security engines—currently showing 0 detections out of 95 engines on VirusTotal—it can evade filters long enough to harvest a meaningful number of victims before takedown efforts catch up. The domain’s low reputation combined with its recent appearance makes it especially dangerous for users who are not actively monitoring their browsing environment. This domain was flagged by PhishDestroy after deep DNS and behavioral analysis revealed a recently registered site with no legitimate ties to any known application ecosystem. It resolves to 104.21.61.40, a hosting address shared with numerous low-trust endpoints, and uses a Let’s Encrypt certificate to appear legitimate. Despite its clean SSL profile, the site exhibits classic phishing hallmarks: mismatched branding, inconsistent page layouts, and input fields that transmit data to external servers rather than the claimed application backend. At present, VirusTotal shows zero detections across its entire engine list, underscoring how new and unclassified this threat remains. If you visited app.arbtirum.sbs, immediately change any passwords you may have entered and enable multi-factor authentication on all accounts accessed from that device. Run a full antivirus scan to check for follow-on malware, inspect browser extensions for unauthorized access, and clear cached credentials. Report the domain to your security team or phishing abuse channels so it can be blocked at the network level. Avoid reopening the site, even to “check if it’s real,” as interaction can signal active interest to attackers and prolong the threat window.
Ağ Güvenliği İstihbaratı Registrar context
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
SHORTDOT BÖLGESİ · KAMUYA AÇIK KANIT
.sbs
ShortDot zone evidence
ShortDot zone evidence
The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.
ICANN OVERSIGHT
Registration: arbtirum.sbs
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For the registrable domain arbtirum.sbs behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Latest Classified Outcome 2026-08-14 02:42:49 UTC
Teknolojiler · 3 identified
Performance monitoring tool that measures website speed from real users.
www.cloudflare.comWeb infrastructure and security company providing CDN, DDoS mitigation, and DNS services.
www.cloudflare.comThird major version of HTTP protocol, built on QUIC for faster, more reliable connections.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of app.arbtirum.sbs · checked Apr 14, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin