Güvenlik raporuna geç
⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 17. Bir eşleşme bildiren genel engellenenler listeleri: 1. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . The recorded recipient is abuse@cogentco.com. The latest stored availability evidence still shows the domain reachable; 3 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
3 months
Reports sent
1
Latest case ID
PD-20260515-D317AA
Current status
Observed active at latest stored check
Etki alanı güvenliği ve tehdit istihbaratı

gxzhrc[.]cn

“Ledger官网 - 全球领先的加密货币硬件钱包 | 军事级数字资产安全专家”

Tehdit kararı Kritik 95/100 kanıt puanı
Kullanılabilirlik Doğrulanmamış Mevcut erişilebilirlik doğrulanmadı
VirusTotal algılamaları: 17/91 Saklanan engelleme listesi eşleşmeleri: 1 URLQuery threat systems: 3 alerts Marka kimliğine bürünme: Ledger
15.05.2026 Ledger 1 Report Sent
Rapor özeti

gxzhrc.cn — Doğrulanmamış. Marka kimliğine bürünme: Ledger; Dolandırıcılık türü: Brand Impersonation. Kanıt özeti: VirusTotal 17/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar); URLQuery 3 alerts; 1 external blocklist match (CryptoFirewall); CF Radar malicious; PhishDestroy score 95/100. Kayıt kuruluşu: 邦宁数字技术股份有限公司.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Kanıt özeti
KRİTİK
Ref
51998B9A
Puan
95/100

The domain gxzhrc.cn is actively hosting a site that impersonates Ledger, as indicated by the page title "Ledger官网 - 全球领先的加密货币硬件钱包 | 军事级数字资产安全专家" and the listed scam type of brand impersonation. Technical analysis shows the site runs on Apache HTTP Server and presents a valid Let's Encrypt R12 TLS certificate. DNS resolution points to IP 206.119.188.101, which is geolocated to the United States and associated with Solustack Limited. The domain was registered on December 14, 2025 through 邦宁数字技术股份有限公司 and uses the nameservers ns1.julydns.com, ns2.julydns.com, ns1.onclouddns.com, and ns2.onclouddns.com. Reputation services have flagged the domain heavily: Gridinsoft assigns a trust score of 0/100, VirusTotal records 17 of 91 security vendors flagging it, and it appears on two external blocklists. Both PhishDestroy and CryptoFirewall have already blocked the domain, and the HTTP response code is 200, confirming the site is reachable. While the page title confirms Ledger impersonation, the full page content, login mechanisms, and any embedded malicious payloads have not been publicly disclosed, leaving detailed payload analysis uncertain. Defenders should immediately block gxzhrc.cn and its associated IP address at perimeter and DNS layers, add the domain to internal threat intelligence feeds, and monitor outbound connections for attempts to contact the hosting IP. Continuous re‑scanning with sandbox and URL analysis tools is advised to capture any evolving malicious components.

VirusTotal
VirusTotal
17 det.
URLQuery
URLQuery
3 threat alerts
DNS Security
7/14
CF Radarı
Zararlı
URLScan
URLScan
ScamAdviser
Scamadviser
59/100
TLS sertifikası
Let's Encrypt
Yaş
8 mo
Gözlemlenen durum
Doğrulanmamış
PhishDestroy
DestroyList
Listede
Reports Sent
1
Veri kapsamı VirusTotal 17 / 91 URLQuery 3 threat-system alerts PhishStats checked — no match recorded OTX no community references CF Radarı provider verdict: malicious URLScan capture saklanan rapor URLScan verdict Analiz tamamlandı DNS engellemeleri 7/14 TLS valid certificate, 70d WHOIS 8 mo old Ekran görüntüsü 3 captures · 3 sources Yönlendirme zinciri araştırılmadı Scamadviser 59/100
Ağ Güvenliği İstihbaratı
DNS Provider Blocks 7 / 14
Adguard Default Adguard Family Cloudflare Family Cloudflare Security Controld Adblock Controld Family Controld Malware
Threat Detection Systems 3 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS gxzhrc.cn malicious Sinkholed
Hagezi Threat Feed gxzhrc.cn malicious Sinkholed
DNS4EU gxzhrc.cn malicious Sinkholed
CF Cloudflare Radar Verdict Zararlı
Malware Security threats Malware

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Kullanılabilirlik
14/15
Sent Report Recorded
Stored sent-report record for registrar 邦宁数字技术股份有限公司, hosting provider, 2 abuse contacts
zhengheqianbao@gmail.comabuse@cogentco.com
15.05.2026

Genel Engelleme Listesi Durumu

Kaydedilen görüntü

Etki Alanı Analizi

Alan adı
URLScan Verdict Analiz tamamlandı score 0 report ↗
Sunucu / ASN Apache · AS133199 SonderCloud Limited
IP itibarı abuse score 0/100 0 reports checked 12.08.2026
Kayıt kuruluşu 邦宁数字技术股份有限公司
IP adresi 206.119.188.101 US
Coğrafi konumUS Los Angeles, US
AS133199 · Solustack Limited
KayıtOluşturuldu 14.12.2025 (244d)
Elapsed Since First Report 27h
Neyi ölçüyoruz Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Doğrulanmamış.
Her raporun içeriği Saklanan giden rapor kayıtları, satıcı kararları, kayıt verileri, barındırma ayrıntıları, sınıflandırmalar veya ekran görüntüleri gibi o sırada mevcut olan kanıtlara referans verebilir. Bu sayfa, teslim edilen yükün, alındığının, onaylandığının veya alıcının yaptığı eylemin tam olarak ne olduğu konusunda bir sonuç çıkarmaz.
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi15.05.2026
DOM Analysisanalyzed 29.07.2026score 88/1005 brand signals
IoC Extractionscanned 29.07.20260 wallet · 0 Telegram IoCs
Submitted URLhttp://gxzhrc.cn/
Ad sunucularıns1.julydns.comns1.onclouddns.comns2.julydns.comns2.onclouddns.com
TLS Fingerprint
TLS Observationvalid from 26.04.2026scanned 16.05.2026
TLS SAN Domainsm.gxzhrc.cnwww.gxzhrc.cn
Favicon Hash
Case ID
Sayfa başlığı
Ledger官网 - 全球领先的加密货币硬件钱包 | 军事级数字资产安全专家
Impersonates
1inch Ledger MetaMask Trezor Trust Wallet
TLS sertifikası
Valid transport encryption · Düzenleyen Let's Encrypt · valid for 70 days
Teknolojiler · 1 identified
Apache HTTP Server
Web servers

Apache is a free and open-source cross-platform web server software.

httpd.apache.org %100 güven
Detected via Cloudflare Radar · Wappalyzer engine
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

17 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed Previous stored snapshot: 17 detections
ADMINUSLabs
alphaMountain.ai
BitDefender
Chong Lua Dao
CyRadar
ESET
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Kaspersky
Lionic
SOCRadar
Sophos
VIPRE
Webroot
Site Performans Analizi

Google PageSpeed Insights — mobile performance audit of gxzhrc.cn · checked May 15, 2026

90
Good
Performance
FCP
0.99s
First Contentful Paint
LCP
2.88s
Largest Contentful Paint
CLS
0
Cumulative Layout Shift
TBT
245ms
Total Blocking Time
SI
3.37s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Kanıtlar ve Dış Raporlar

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260515-D317AA Recipient: abuse@cogentco.com
Page title stored with report: Ledger官网 - 全球领先的加密货币硬件钱包 | 军事级数字资产安全专家
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 5.9 KB

Bu Siteden Etkilendiniz mi?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin

Herhangi Bir Alan Adını Kontrol Et

Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi

Şimdi Tara

Oltalama Olayını Bildir

Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun

Bildir

Canlı Tehdit Akışı

Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri

İzle

Gelişmelerden Haberdar Olun, Güvende Kalın

Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin

Canlı Tehdit Akışı Bu İlanı İtiraz Et
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/gxzhrc.cn"
  title="PhishDestroy threat report for gxzhrc.cn"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>