help-manage-subscription[.]com
help-manage-subscription.com için kimlik avı ve güvenlik kontrolü
“Subscription Manager”
help-manage-subscription.com — İçerik kullanılamıyor (HTTP 502). Dolandırıcılık türü: Generic Phishing. Kanıt özeti: VT 21/91 (Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25); URLQuery 5 alerts; URLScan no malicious verdict; GSB no flag; Spamhaus DBL_PHISH; BL 0; CF Radar malicious; PD 100/100. Kayıt kuruluşu: Hosting Concepts.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
help-manage-subscription.com entered the PhishDestroy evidence set on Jun 24, 2026. The stored content classification is generic phishing. The assembled evidence scores 100/100 (critical).
Four independent sources are positive: VirusTotal, Spamhaus DBL, Cloudflare Radar, and URLQuery. VirusTotal recorded 21 detections among 91 engines: Criminal IP, alphaMountain.ai, BitDefender, Chong Lua Dao, Cluster25, CRDF, CyRadar, ESET, Forcepoint ThreatSeeker, Fortinet, G-Data, Gridinsoft, Kaspersky, Lionic, MalwareURL, OpenPhish, Seclookup, SOCRadar, Sophos, VIPRE on Jul 18, 2026 at 20:45 UTC. Spamhaus DBL: DBL_PHISH on Jul 24, 2026 at 18:30 UTC. Cloudflare Radar classified the hostname as malicious and placed it in the phishing category; its verdict timestamp was not retained. URLQuery recorded 5 threat-system alerts on Jun 24, 2026 at 10:47 UTC. The evidence is not unanimous. The external blocklist snapshot contained no matches on Aug 7, 2026 at 18:20 UTC. Google Safe Browsing returned no flag on Jun 24, 2026 at 10:50 UTC. URLScan completed without a malicious verdict (score 0) on Jun 25, 2026 at 08:15 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 02:02 UTC; content was unavailable. Registration records for the domain list Hosting Concepts B.V. d/b/a Registrar.eu as the registrar and May 9, 2026 as the creation date. At collection time, the hostname resolved to 158.94.210.185 on AS202412 (OMEGATECH-AS Omegatech LTD, SC). The associated network metadata labels the endpoint as AS202412 Omegatech LTD in Amsterdam, NL. The stored server header is nginx. Captured page title: “Subscription Manager”. DOM analysis completed on Jun 24, 2026 at 14:20 UTC; stored DOM score 88/100. The evidence archive retains 3 visual captures from PhishDestroy, URLScan, and URLQuery. IoC extraction completed on Jul 29, 2026 at 01:58 UTC; stored 0 format-validated wallet addresses and 0 Telegram indicators. TLS metadata lists Let's Encrypt / R13 as the certificate issuer with validity through Aug 8, 2026; checked Jun 24, 2026 at 13:00 UTC.
No target brand has been confirmed from stored page content; hostname wording alone is not treated as brand evidence. Taken together, the page content and independent findings support classifying this hostname as generic phishing.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DigiCert UltraDNS | help-manage-subscription.com |
malicious | Sinkholed |
| Quad9 DNS | help-manage-subscription.com |
malicious | Sinkholed |
| OpenDNS | help-manage-subscription.com |
phishing | Phishing Block |
| Cloudflare DNS | help-manage-subscription.com |
malicious | Sinkholed |
| DNS4EU | help-manage-subscription.com |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
ICANN Parasını Aldı. Hesap Verebilirlik Gelmedi.
Bu gTLD için, yukarıdaki alan adı kayıt kuruluşu bir ICANN sözleşmesi kapsamında faaliyet gösterir. ICANN; kayıt, yenileme ve transferlerle bağlantılı yıllık, değişken ve işlem bazlı ücretler tahsil eder.
Akreditasyon: paraya çevrildi. Hesap verebilirlik: lütfen daha sonra tekrar kontrol edin.
Sonra sihir başlar: ICANN RAA §3.18'i yazar, alan adı kayıt kuruluşu kendi müşteri tabanındaki kötüye kullanımı soruşturur ve her katman bir başkasının harekete geçmesini beklerken mağdurlar kanıtları ücretsiz sunar. Bu, mağdurların kendilerini daha güvende hissetmelerini sağlıyorsa harika—demek ki fatura işe yaramış.
Teknolojiler · 4 identified
Node.js is an open-source, cross-platform, JavaScript runtime environment that executes JavaScript code outside a web browser.
nodejs.org %100 güvenPhusion Passenger is a free web server and application server with support for Ruby, Python and Node.js.
phusionpassenger.com %100 güvenNginx is a web server that can also be used as a reverse proxy, load balancer, mail proxy and HTTP cache.
nginx.org %100 güvenExpress is a web application framework for Node.js, released as free and open-source software under the MIT License. It is designed for building web applications and APIs.
expressjs.com %100 güvenVirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin