Güvenlik raporuna geç
⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 4. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
Etki alanı güvenliği ve tehdit istihbaratı

crossculturalfoundation[.]or[.]ug

“crossculturalfoundation.or.ug”

Tehdit kararı Kritik 72/100 kanıt puanı
Kullanılabilirlik Bilinen son aktif En son saklanan erişilebilirlik gözlemi
VirusTotal algılamaları: 4/91 Dolandırıcılık türü: Credential Phishing Bilinen son aktif
24.04.2026
Rapor özeti

crossculturalfoundation.or.ug — Bilinen son aktif (HTTP 301). Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 4/91 (alphaMountain.ai, CRDF, Gridinsoft, SOCRadar); PhishDestroy score 72/100.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Kanıt özeti
KRİTİK
Ref
EF6CA6B0
Puan
72/100

This domain is flagged as a high-risk generic phishing threat and remains active as of July 12, 2026. The domain was registered on April 24, 2026, which is a recent registration for a site claiming to represent a cultural foundation. It resolves to IP address 198.251.89.164, hosted in Luxembourg by FranTech Solutions, a provider known for low-cost hosting often abused by malicious actors. The infrastructure runs on a WordPress stack with MySQL and PHP, using ZURB Foundation and Bootstrap for frontend styling, along with LiteSpeed web server, Swiper, and Slider Revolution plugins. The domain uses Let's Encrypt SSL for encryption and is served over HTTP 200. Email handling is routed through Google's MX servers. The site appears on one security blocklist and has a Gridinsoft trust score of 0 out of 100, indicating strong negative reputation signals. VirusTotal shows detection by 1 of 94 security vendors, confirming malicious classification by at least one engine. PhishDestroy has blocked this domain. The page title matches the domain exactly, suggesting minimal content customization. The exact phishing method or targeted brand has not been identified in available data; however, the site's generic name and recent creation align with credential harvesting campaigns. Defenders should block access to this domain at the network level, monitor for related domains using the same nameservers (ns13.my-control-panel.com and ns14.my-control-panel.com), and investigate any credentials submitted to the site. The domain's hosting provider should be notified for abuse takedown.

VirusTotal
VirusTotal
4 det.
DNS Security
1/12
URLScan
URLScan
ScamAdviser
Scamadviser
100/100
TLS sertifikası
Let's Encrypt
Yaş
4 mo
Gözlemlenen durum
Bilinen son aktif 301
PhishDestroy
DestroyList
Listede
Veri kapsamı VirusTotal 4 / 91 URLQuery checked — no detections recorded PhishStats checked — no match recorded OTX no community references CF Radarı scan completed URLScan capture saklanan rapor URLScan verdict değerlendirme yok DNS engellemeleri 1/12 TLS valid certificate, 57d WHOIS 4 mo old Ekran görüntüsü 2 captures · 2 sources Yönlendirme zinciri araştırılmadı Scamadviser 100/100
Ağ Güvenliği İstihbaratı
DNS Provider Blocks 1 / 12
Brand Foundation

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Kullanılabilirlik
10/12

Genel Engelleme Listesi Durumu

Kaydedilen görüntü

Etki Alanı Analizi

Alan adı
Sunucu / ASN LiteSpeed · AS53667 FranTech Solutions
IP itibarı abuse score 7/100 2 reports checked 12.08.2026
Kayıt kuruluşu Bilinmiyor
Kötüye kullanım iletişim bilgisifabunyanga@gmail.com
IP adresi 198.251.89.164 LU
Coğrafi konumLU Luxembourg, LU
AS53667 · FranTech Solutions
KayıtOluşturuldu 24.04.2026 (115d)
HTTP Durumu301 Moved Permanently
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi24.04.2026
IoC Extractionscanned 29.07.20260 wallet · 0 Telegram IoCs
Submitted URLhttps://crossculturalfoundation.or.ug/instructors/
Ad sunucularıns13.my-control-panel.comns14.my-control-panel.com
MX Records1 ASPMX.L.GOOGLE.COM 5 ALT2.ASPMX.L.GOOGLE.COM 5 ALT1.ASPMX.L.GOOGLE.COM 10 ALT3.ASPMX.L.GOOGLE.COM 10 ALT4.ASPMX.L.GOOGLE.COM
TLS Fingerprint
TLS Observationvalid from 23.03.2026scanned 29.04.2026
TLS SAN Domainswww.crossculturalfoundation.or.ug
Favicon Hash
Sayfa başlığı
crossculturalfoundation.or.ug
TLS sertifikası
Valid transport encryption · Düzenleyen Let's Encrypt · valid for 57 days
Teknolojiler · 11 identified
WordPress
CMS Blogs

WordPress is a free and open-source content management system written in PHP and paired with a MySQL or MariaDB database. Features include a plugin architecture and a template system.

wordpress.org %100 güven
MySQL
Databases

MySQL is an open-source relational database management system.

mysql.com %100 güven
PHP
Programming languages

PHP is a general-purpose scripting language used for web development.

php.net %100 güven
ZURB Foundation
UI frameworks

Zurb Foundation is used to prototype in the browser. Allows rapid creation of websites or applications while leveraging mobile and responsive technology. The front end framework is the collection of HTML, CSS, and Javascript containing design patterns.

foundation.zurb.com %100 güven
Bootstrap
UI frameworks

Bootstrap is a free and open-source CSS framework directed at responsive, mobile-first front-end web development. It contains CSS and JavaScript-based design templates for typography, forms, buttons, navigation, and other interface components.

getbootstrap.com %100 güven
LiteSpeed
Web servers

LiteSpeed is a high-scalability web server.

litespeedtech.com %100 güven
Swiper
JavaScript libraries

Swiper is a JavaScript library that creates modern touch sliders with hardware-accelerated transitions.

swiperjs.com %100 güven
Slider Revolution
Widgets Photo galleries

Slider Revolution is a flexible and highly customisable slider.

www.sliderrevolution.com %100 güven
jQuery Migrate
JavaScript libraries

Query Migrate is a javascript library that allows you to preserve the compatibility of your jQuery code developed for versions of jQuery older than 1.9.

github.com %100 güven
jQuery
JavaScript libraries

jQuery is a JavaScript library which is a free, open-source software designed to simplify HTML DOM tree traversal and manipulation, as well as event handling, CSS animation, and Ajax.

jquery.com %100 güven
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org %100 güven
Detected via Cloudflare Radar · Wappalyzer engine
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

4 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed Previous stored snapshot: 1 detection
alphaMountain.ai
CRDF
Gridinsoft
SOCRadar
Site Yapılandırma Analizi
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
/wp-admin/ /wp-admin/admin-ajax.php

Kanıtlar ve Dış Raporlar

Bu Siteden Etkilendiniz mi?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin

Herhangi Bir Alan Adını Kontrol Et

Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi

Şimdi Tara

Oltalama Olayını Bildir

Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun

Bildir

Canlı Tehdit Akışı

Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri

İzle

Gelişmelerden Haberdar Olun, Güvende Kalın

Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin

Canlı Tehdit Akışı Bu İlanı İtiraz Et
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/crossculturalfoundation.or.ug"
  title="PhishDestroy threat report for crossculturalfoundation.or.ug"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>