Güvenlik raporuna geç
Checked 09.08.2026 Ref 4C0F6FA1

MALICIOUS — CRITICAL

bonusweb.org için kimlik avı ve güvenlik kontrolü

bonusweb[.]org

PhishDestroy identifies bonusweb.org as a generic phishing domain impersonating rewards and giveaway platforms to harvest login credentials and personal data.

87/100 evidence score · Critical
VirusTotal
9/91
Blocklists
No stored match
Kullanılabilirlik
Bilinen son aktif · HTTP 301
Report / Add Evidence Appeal this listing
2026-04-27 11:20 UTCBilinen son aktif · HTTP 301

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 9. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
Jump to section
Rapor özeti

bonusweb.org — Bilinen son aktif (HTTP 301). Dolandırıcılık türü: Fake Airdrop. Kanıt özeti: VirusTotal 9/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, CyRadar, Fortinet); URLQuery 2 alerts; PhishDestroy score 87/100. Kayıt kuruluşu: PDR.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Evidence Analysis

Ref 4C0F6FA1

PhishDestroy identifies bonusweb.org as a generic phishing domain impersonating rewards and giveaway platforms to harvest login credentials and personal data. The domain exhibits typical phishing characteristics, including recent registration and low detection rates, suggesting an active threat campaign targeting unsuspecting users. No specific drainer kit or brand impersonation has been conclusively linked to this domain at the time of this report, but the structure aligns with common credential harvesting schemes.

This domain was flagged with a VirusTotal detection score of 9/95, indicating no current detections among major security vendors. It was registered through PDR Ltd. d/b/a PublicDomainRegistry.com, resolves to IP address 178.253.46.86, and utilizes a Let's Encrypt SSL certificate for legitimacy. The domain was created on June 01, 2023, and remains unblocked by Google Safe Browsing (GSB) at this time. The low detection rate and active status warrant immediate caution, as it may evade traditional security measures.

As of the latest analysis, bonusweb.org remains classified as 'active' with a risk level of 'under_investigation'. Users are advised to avoid interacting with this domain and report it to their security teams or relevant phishing databases. The current risk is elevated due to the lack of vendor detections and the domain's recent activity. PhishDestroy continues to monitor this domain, and security researchers are encouraged to submit additional threat intelligence to refine classification and mitigation strategies. Remaining risk includes potential data theft or malware distribution if users engage with the site.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
9 det.
URLQuery
URLQuery
2 threat alerts
URLScan
URLScan
ScamAdviser
Scamadviser
65/100
TLS sertifikası
Let's Encrypt
Yaş
3 mo
Gözlemlenen durum
Bilinen son aktif 301
PhishDestroy
DestroyList
Listede
Veri kapsamı13 recorded checks
VirusTotal 9 / 91 URLQuery 2 threat-system alerts PhishStats checked — no match recorded OTX no community references CF Radarı scan completed URLScan capture saklanan rapor URLScan verdict Analiz tamamlandı DNS engellemeleri 12 kontrol edildi — engelleme yok TLS valid certificate, 68d WHOIS 3 mo old Ekran görüntüsü 2 captures · 2 sources Yönlendirme zinciri araştırılmadı Scamadviser 65/100
Ağ Güvenliği İstihbaratı
Threat Detection Systems 2 alerts
Detection System Indicator Verdict Alert
DNS4EU bonusweb.org malicious Sinkholed
Hagezi Threat Feed bonusweb.org malicious Sinkholed

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Kullanılabilirlik
9/11
Tehdit Alındı
bonusweb.org tespit edildi ve kapsamlı analiz için sıraya alındı
27.04.2026
URLScan.io Capture
Stored URLScan report with capture artifacts
URLScan Verdict
URLScan analizi tamamlandı; bu web yakalama sonucu sayfa tehdidi kararını değiştirmez · score 0
29.07.2026
Cloudflare Radar Report
A stored Cloudflare Radar report is available. The report link alone is not a malicious verdict and does not prove that every network field was captured.
VirusTotal
9/91 recorded on VirusTotal
10.07.2026
Google Safe Browsing
27.04.2026
Forensic Evidence Collected
Stored evidence from URLScan.io, URLQuery, stored screenshot
Technical Analysis Recorded
Rapor, depolanan teknolojiyi veya adli analiz sonuçlarını içerir.
09.08.2026
Complaint Draft Available
Hiçbir gönderim kaydedilmez. Bir taslak oluşturabilir, inceleyebilir ve kendiniz uygun makama gönderebilirsiniz.
DestroyList Yayınlandı
27.04.2026
Monitoring Continues
Etki alanı erişilebilir durumda kalır veya erişimi kısıtlıdır; gelecekteki kontroller bu gözlemi güncelleyebilir.

Genel Engelleme Listesi Durumu

Kaydedilen görüntü

Sayfa başlığı
bonusweb.org
TLS sertifikası
Valid transport encryption · Düzenleyen Let's Encrypt · valid for 68 days

Etki Alanı Analizi

Alan adı
URLScan Verdict Analiz tamamlandı score 0 report ↗
Sunucu / ASN AS202492 SILVERHILL GROUP HOLDING LTD
IP itibarı abuse score 0/100 0 reports checked 13.07.2026
Kayıt kuruluşu PDR IN(IN)
IP adresi 178.253.46.86 SC
Coğrafi konumSC Cascade, SC
AS202492 · Silverhill
KayıtOluşturuldu 27.04.2026 (104d)
HTTP Durumu301 Moved Permanently
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi27.04.2026
IoC Extractionscanned 29.07.20260 wallet · 0 Telegram IoCs
Submitted URLhttp://bonusweb.org/
Ad sunucularıdns54.cloudns.net
TLS Fingerprint
TLS Observationvalid from 06.04.2026scanned 03.05.2026
ICANN OVERSIGHT

Akreditasyon ve RAA bağlamı

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Hiçbir şey otomatik olarak gönderilmez.
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

9 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed Previous stored snapshot: 8 detections
ADMINUSLabs
alphaMountain.ai
Chong Lua Dao
CyRadar
Fortinet
Lionic
Sophos
VIPRE
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin
Bu Raporu YerleştirRead-only HTML widget
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/bonusweb.org"
  title="PhishDestroy threat report for bonusweb.org"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Çok İçten Bir Teşekkür Mektubu

Hicivli taslak oluşturucu

Alıcı
Ücret bağlamı

Hicivli taslak. Ücret rakamları tahminidir; bu alan adına kesin olarak atfedildikleri iddia edilmez.