esee36[.]it
esee36.it için kimlik avı ve güvenlik kontrolü
“Page d’accueil”
esee36.it — Ulaşılabilir · erişim kısıtlı (HTTP 403). Marka kimliğine bürünme: Genericcrypto; Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VT 16/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar); URLQuery 0; URLScan malicious; GSB no flag; BL 1 (ScamSniffer); PD 100/100. Kayıt kuruluşu: Dynadot.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy first observed esee36.it on Feb 9, 2026. Positive findings were recorded by VirusTotal, ScamSniffer, and URLScan. Evidence score: 100/100.
VirusTotal recorded 16 detections among 93 engines: ADMINUSLabs, alphaMountain.ai, BitDefender, CRDF, CyRadar, ESET, Forcepoint ThreatSeeker, Fortinet on Jul 18, 2026 at 18:45 UTC. The external blocklist snapshot contained 1 match (ScamSniffer) on Aug 7, 2026 at 14:20 UTC. URLScan returned a malicious verdict with score 100 on Mar 26, 2026 at 12:44 UTC. URLQuery recorded no positive detection. Google Safe Browsing returned no flag on Mar 2, 2026 at 20:22 UTC. PhishStats returned no feed match on Mar 2, 2026 at 10:08 UTC.
An access-restricted HTTP 403 response was recorded on Aug 7, 2026 at 01:56 UTC. Registration records list Dynadot LLC as the registrar. At collection time, the domain resolved to 172.67.137.28. Collected metadata identifies Genericcrypto as the apparent target. Captured page title: “Page d’accueil”. PhishDestroy classified the observed content as Credential Phishing. DOM analysis completed on Jul 28, 2026 at 02:20 UTC; stored DOM score 88/100. IoC extraction completed on Aug 2, 2026 at 04:01 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators.
Stored full analysis26.06.2026
This domain, esee36.it, is identified as a credential harvesting phishing site targeting French-speaking users, as indicated by its page title 'Page d’accueil.' The domain is currently offline but was actively flagged for malicious activity prior to takedown. No specific brand impersonation has been confirmed, though the generic French-language landing page suggests broad targeting of login credentials. Analysis indicates the domain was registered through Dynadot LLC on February 21, 2026, an anomalous future date likely intended to evade detection. It resolves to the IP address 104.21.38.177, hosted on AS13335 (Cloudflare, Inc.). The domain appears on two security blocklists and is flagged by 16 of 95 security vendors on VirusTotal. Its SSL certificate, issued by Google Trust Services (WE1), does not mitigate the malicious intent. Infrastructure analysis reveals the use of Cloudflare’s network, a common tactic to obscure hosting origins and complicate takedown efforts. The domain is currently offline, though residual risk remains due to its recent activity and blocklist presence. Organizations are advised to block the domain and its resolving IP (104.21.38.177) at the perimeter. Security teams should monitor for related indicators, including the anomalous registration date and SSL certificate issuer, to detect potential follow-up campaigns. End-users should be alerted to phishing attempts leveraging French-language landing pages, particularly those hosted on newly registered or suspiciously dated domains.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 5 identified
Vue.js is an open-source model–view–viewmodel JavaScript framework for building user interfaces and single-page applications.
vuejs.org %100 güvenHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org %100 güvenCloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.
www.cloudflare.com %100 güvenCloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.
www.cloudflare.com %100 güvenHTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Arşivlenmiş Kanıtlar
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of esee36.it · checked Mar 1, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Bu Rapor Hakkında: esee36.it
Bu rapor, PhishDestroy'un kullanabileceği en son saklanan kanıtları sunar. Kaynak zaman damgaları mümkün olan yerlerde gösterilir; Stok durumu ve satıcı kararları toplama sonrasında değişebilir.
Yakalanan site “Page d’accueil” sayfa başlığını gösteriyordu ve Genericcrypto'nin kimliğine bürünüyor olabilir.
07.08.2026 itibarıyla esee36.it, 16 güvenlik motorlarından tespitler aldı.
Bu listenin hatalı olduğunu düşünüyorsanız itirazda bulunmak. Metodolojimiz hakkında bilgi edinmek için SSS sayfası adresini ziyaret edin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin