area[.]primebergroup[.]org
Kaydedilmiş tespit
Gizleme uyarısı
- Gizleme türü
content_divergence- Gizleme puanı
- 1/6
Kanıt özeti
This domain, area.primebergroup.org, is identified as a high-risk phishing site specializing in cryptocurrency wallet credential theft. Analysis indicates the infrastructure is designed to replicate legitimate wallet interfaces, likely employing a wallet drainer kit to siphon digital assets upon user interaction. The domain exhibits characteristics consistent with targeted phishing campaigns against decentralized finance users, though no specific brand impersonation has been conclusively linked at this time. Infrastructure analysis reveals the following technical indicators: the domain resolves to IP address 172.67.136.118, a Cloudflare-hosted endpoint. It is registered through Internet Domain Service BS Corp, a registrar frequently associated with malicious domains. Detection metrics show 13 of 95 security vendors flagging the domain on VirusTotal, while it appears on three independent security blocklists. The SSL certificate is issued by Google Trust Services, and the site employs multiple tracking and analytics technologies, including Highcharts, Google Tag Manager, and Cloudflare Browser Insights. Notably, the domain supports HTTP/3, a protocol rarely implemented in legitimate phishing sites but increasingly observed in high-velocity attack infrastructure. Current status indicates the domain has been taken offline, likely following enforcement actions by security providers. Despite its inactive state, residual risk persists due to the domain's prior registration and hosting patterns. Users who interacted with the site prior to takedown remain at elevated risk of credential compromise and should immediately revoke wallet authorizations, rotate credentials, and monitor transaction histories for unauthorized activity. Security teams are advised to maintain blocklist entries for this domain and its associated IP, as re-registration or DNS reconfiguration remains possible.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 13.08.2026
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
ICANN OVERSIGHT
Registration: primebergroup.org
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For the registrable domain primebergroup.org behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler
5 yüksek güvenli teknoloji belirlendi
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of area.primebergroup.org · checked Jun 26, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin