VirusTotal
4 / 89
“Trezor Bitcoin Explorer”
ddggttww.amlsafe.io — Bilinen son aktif (HTTP 301). Marka kimliğine bürünme: Trezor; Dolandırıcılık türü: Aml Scam. Kanıt özeti: VirusTotal 4/89 (alphaMountain.ai, Forcepoint ThreatSeeker, PhishFort, SOCRadar); PhishDestroy score 72/100.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
On 2026-10-01, ddggttww.amlsafe.io returned HTTP status 301 according to the recorded HTTP check, indicating a redirect response at that time. The domain was first observed on 2026-07-27, and the publisher-owned PhishDestroy catalogue includes an internal listing for ddggttww.amlsafe.io.
The HTTP check dated 2026-10-01 recorded status 301 for ddggttww.amlsafe.io. The first observation of this domain is dated 2026-07-27. VirusTotal, checked on 2026-09-21, reported 4 detections across 89 scanners. The SSL scan dated 2026-09-19 recorded Google Trust Services / WE1 as the certificate issuer. The blocklist check dated 2026-10-01 returned a PhishDestroy internal listing. The IP address 172.67.173.115 is associated with Cloudflare, Inc. in CA.
The HTTP 301 record describes only the response captured on its check date, not the domain's full content or present availability. The PhishDestroy internal listing and the VirusTotal detections are separate source records with different measurement dates, so they should be compared rather than merged into a single verdict. The gap between the first observation and the later checks shows the records span distinct points in time, but the dates alone do not establish a trend or change in behavior.
Preserve the HTTP check record for ddggttww.amlsafe.io and the PhishDestroy internal listing as separate source records. Compare the VirusTotal detection record with the PhishDestroy listing in separate sentences when reviewing ddggttww.amlsafe.io. Retain the first observation record and the SSL scan record for future reference alongside the other dated evidence.
Bu ana bilgisayar için saklanmış tarayıcı-karşı-tarayıcı gözlemleri ile Keitaro tarzı trafik dağıtım sistemleri için gerçek zamanlı parmak izi kontrolü.
cloudflareTarayıcı notu: redirect: raw=redirect_301; http=301; via=http_proxy; location=https://ddggttww.amlsafe.io/; server=cloudflare
Edge-IP itibarı bu etki alanıyla ilişkilendirilmez.
Location describes the IP network.
9f720546c30b4c98176150995e5acaa07d10dea251e51aa89391e73a76484952amlsafe.ioSaved certificate metadata. Certificate dates without a timezone are shown as stored. Transport encryption does not establish that the site is trustworthy.
172.67.173.115. 11 recorded events. These records describe collected evidence, outgoing notifications and publication; they do not confirm a complete investigation or a takedown.
We scan suspicious URLs, inspect public results and send evidence through the appropriate abuse-reporting channels. The dated events above show what is recorded for this domain. The directory below explains the wider workflow.
Capture the rendered page, requests and visible infrastructure.
Compare the available engine results and retain the analysis timestamp.
Check whether Google currently lists the URL as unsafe.
Inspect a public scan and its recorded network and classification data.
Look for indicator references and related community intelligence.
Compare archived captures and preserve historical context.
Look for matching indicators and associated threat records.
Inspect certificate records and related hostnames.
Compare security resolver responses and record observed blocking.
Inspect the public DNS, TLS, HTTP and technology surface.
Security services used for scanning, reputation checks and reporting are listed below. A service being listed is not evidence that it received, accepted or acted on this particular domain. Recorded submissions appear in the notification history above.
74 kayıtlı benzer alan adı
1 topluluk raporu
KategoriIMPERSONATION
Brand abuse: impersonation, impersonating Trezor
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Template-based draft · optional AI wording assistance requires separate consent
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraŞüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirSon kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleCanlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin