fun100x.network
fun100x.network — İçerik kullanılamıyor. Marka kimliğine bürünme: Unknown; Dolandırıcılık türü: Impersonation. Kanıt özeti: VirusTotal 6/90 (alphaMountain.ai, Chong Lua Dao, Forcepoint ThreatSeeker, Fortinet, Gridinsoft); cloaking observed; PhishDestroy score 78/100. Kayıt kuruluşu: PDR.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
Kanıt özeti
fun100x.network was registered on February 21, 2026 through PDR Ltd. d/b/a PublicDomainRegistry.com. The domain resolves to the IP address 104.21.20.199, which belongs to Cloudflare, Inc. (AS13335) and is geolocated in the United States. Nameserver resolution points to earl.ns.cloudflare.com and melody.ns.cloudflare.com, confirming that the domain is fronted by Cloudflare’s edge network and is served over HTTP/3. The only HTTP response observed is a 403 status code, and the TLS handshake terminates with a certificate issued by Google Trust Services under the label WE1. The page title returned by the server is “Just a moment…”, which is a generic placeholder often used by Cloudflare challenge pages. No additional content was captured, so the exact phishing payload cannot be confirmed at this time. Threat intelligence flags the domain as a generic phishing site. It appears on a single security blocklist and has been explicitly blocked by PhishDestroy. Independent scoring systems show a Gridinsoft trust score of 0 out of 100, and VirusTotal reports a single security vendor flagging the domain. The combination of a newly created domain, use of Cloudflare protection, and a low trust score aligns with typical infrastructure choices observed in phishing campaigns. Because the underlying page content has not been disclosed, the specific brand or credential‑harvesting technique remains uncertain. However, the presence of a Cloudflare challenge page, a 403 response, and the “Just a moment…” title indicate an attempt to hide malicious redirects behind a short‑lived verification step. Defenders should continue to block the domain at perimeter filters, monitor DNS queries for the associated IP address, and incorporate the domain into threat‑intel feeds. Ongoing observation is recommended to capture any future payload changes.
Forensic History & Detection Timeline
-
Domain Status Transition Sep 14, 2026 · 12:32 UTCDomain state transitioned from alive to dead.
-
Domain Status Transition Aug 6, 2026 · 00:14 UTCDomain state transitioned from dead to alive.
-
Domain Status Transition Aug 5, 2026 · 12:18 UTCDomain state transitioned from alive to dead.
-
Cloudflare Radar Scan Mar 9, 2026 · 07:04 UTCCloudflare Radar scan registered: View Radar report.
-
Cloudflare Radar Scan Mar 3, 2026 · 14:14 UTCCloudflare Radar scan registered: View Radar report.
-
Domain Status Transition Mar 2, 2026 · 22:33 UTCDomain state transitioned from alive to dead.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Evasion evidence
Cloaking confirmed: scanners and victims see different content
The page served one response to a browser-like visitor and another to a crawler or security scanner. Cloaking exists only to keep reviewers away from the real landing page.
- Stored cloaking flag
- Observed
- Gizleme türü
status_split- Gizleme puanı
- 4/6
- Last cloaking scan
Scanner note: dns_error: raw=dns_error; via=local_dns_prefilter
Kaydedilen görüntü · 2 sources
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 2 identified
VirusTotal Analizi
Topluluk raporları
1 topluluk üyesi tarafından bildirildi; ilk görülme 06.08.2025
- Kayıtlı raporlar
- 1
- Bildirilen benzersiz URL’ler
- 1
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin