VirusTotal
6 / 89
“SA FORTNITE GIVEAWAY IO”
The sent-report ledger records the first outgoing report at .
The recorded recipient is abuse@dynadot.com.
The latest stored availability evidence still shows the domain reachable; 5 months has elapsed since the first outgoing report.
ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps, listed recipients, case identifiers, and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.
iosa.credit — Bilinen son aktif (HTTP 200). Marka kimliğine bürünme: Epic games; Dolandırıcılık türü: Fake Airdrop. Kanıt özeti: VirusTotal 6/89 (alphaMountain.ai, BitDefender, Chong Lua Dao, Fortinet, G-Data); URLQuery 2 alerts; Spamhaus DBL_PHISH; PhishDestroy score 88/100. Kayıt kuruluşu: Dynadot.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
6 / 89
2 threat-system alerts
Bildir24/100
DBL_PHISH
checked — no match recorded
23 community references
Bildirprovider verdict: clean
Bildirsaklanan rapor
Bildir Analiz tamamlandı
Bildir12 kontrol edildi — engelleme yok
Checked; no threat flag recorded
Bildir| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| DNS4EU | iosa.credit |
malicious | Sinkholed |
| DigiCert UltraDNS | www.pngmart.com |
malicious | Sinkholed |
PhishDestroy identifies iosa.credit as a recently deployed crypto-draining domain designed to impersonate legitimate credit service platforms. The domain was registered on July 28, 2025, and resolved to IP address 45.151.91.170, hosting a generic phishing kit likely targeting users seeking financial or credit-related services through deceptive login pages. While the precise drainer kit remains unverified due to the site’s current offline status, the infrastructure suggests a high-probability credential theft operation aimed at harvesting login credentials and cryptocurrency wallet access.
Technical indicators for iosa.credit confirm elevated operational risk. The domain was flagged by only 2 out of 95 VirusTotal security vendors, indicating low detection across global threat intelligence platforms. Registered through Dynadot Inc., the site utilized a Let’s Encrypt SSL certificate to enhance credibility. The domain was created on July 28, 2025, and has since been added to multiple blocklists, reflecting rapid dissemination within threat intelligence feeds. At the time of analysis, the domain resolves to IP 45.151.91.170, a hosting infrastructure with a history of association with low-trust or malicious activity.
As of the most recent scans, iosa.credit has been taken offline, reducing immediate risk to potential victims. However, the domain’s rapid deployment and low detection rate suggest it may be reactivated or replaced under similar branding. Users are advised to avoid interacting with this domain or any related infrastructure. Security teams should ensure their blocklists include iosa.credit and monitor for related domains registered through the same registrar or associated IP ranges. The residual risk remains elevated due to the threat actor’s likely persistence in reusing tactics and infrastructure to target unsuspecting users in the credit and financial services sector.
Bu ana bilgisayar için saklanmış tarayıcı-karşı-tarayıcı gözlemleri ile Keitaro tarzı trafik dağıtım sistemleri için gerçek zamanlı parmak izi kontrolü.
Apache/2Tarayıcı notu: alive_content: raw=ok; http=200; via=https_proxy; server=Apache/2
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
ns3.offsh.nlns4.offsh.nlLocation describes the IP network.
51181f00682d1db08cd811c18195875b683567738d956c84b15d9dea28466812Saved certificate metadata. Certificate dates without a timezone are shown as stored. Transport encryption does not establish that the site is trustworthy.
Google PageSpeed Insights — mobile performance audit of iosa.credit · checked Apr 14, 2026
14 recorded events. These records describe collected evidence, outgoing notifications and publication; they do not confirm a complete investigation or a takedown.
We scan suspicious URLs, inspect public results and send evidence through the appropriate abuse-reporting channels. The dated events above show what is recorded for this domain. The directory below explains the wider workflow.
Capture the rendered page, requests and visible infrastructure.
Compare the available engine results and retain the analysis timestamp.
Check whether Google currently lists the URL as unsafe.
Inspect a public scan and its recorded network and classification data.
Look for indicator references and related community intelligence.
Compare archived captures and preserve historical context.
Look for matching indicators and associated threat records.
Inspect certificate records and related hostnames.
Compare security resolver responses and record observed blocking.
Inspect the public DNS, TLS, HTTP and technology surface.
Security services used for scanning, reputation checks and reporting are listed below. A service being listed is not evidence that it received, accepted or acted on this particular domain. Recorded submissions appear in the notification history above.
1 topluluk üyesi tarafından bildirildi; ilk görülme 14.04.2026
PD-20260414-31CC3B Recipient: abuse@dynadot.com Registrar: Dynadot LLC / Dynadot Inc (United States) Policy Violations: Acceptable Use forbids illegal content; Spam & Abuse Policy prohibits phishing, fraud, malware; Dynadot may disable DNS and suspend domains Applicable Laws: CFAA 18 U.S.C. §1030, Wire Fraud 18 U.S.C. §1343, CAN-SPAM Act
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Template-based draft · optional AI wording assistance requires separate consent
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraŞüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirSon kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleCanlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin