Güvenlik raporuna geç
⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 19. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 2 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
2 months
Reports sent
1
Current status
HTTP 200 at latest stored check
Etki alanı güvenliği ve tehdit istihbaratı

m[.]yh2861[.]com

“银河娱乐-银河娱乐(中文)官方网站”

Tehdit kararı Kritik 100/100 kanıt puanı
Kullanılabilirlik Bilinen son aktif En son saklanan erişilebilirlik gözlemi
VirusTotal algılamaları: 19/91 Spamhaus DBL: DBL_SPAM URLQuery threat systems: 3 alerts Dolandırıcılık türü: Generic Phishing Bilinen son aktif
20.05.2026 1 Report Sent

Kanıt özeti

KRİTİK
Evidence score
100/100

This domain, m.yh2861.com, is flagged as a high-risk generic phishing site impersonating Galaxy Entertainment (银河娱乐), a known gambling and entertainment brand. The page title, 银河娱乐-银河娱乐(中文)官方网站, explicitly mimics the legitimate Chinese-language portal of the target organization, suggesting an intent to deceive users into submitting login credentials, payment details, or other sensitive information. No specific drainer kit signatures have been identified in preliminary analysis, but the site employs standard phishing tactics, including SSL encryption to lend an appearance of legitimacy. Infrastructure analysis reveals the domain was registered on May 20, 2026, through TuringSign Inc. d/b/a Cosmotown, a registrar frequently associated with malicious domains. It resolves to the IP address 156.227.113.10, hosted by Starbow Ltd in Hong Kong, a provider with a history of facilitating phishing infrastructure. Detection metrics indicate the domain is flagged by 14 out of 95 security vendors on VirusTotal, while appearing on a single blocklist, specifically PhishDestroy. The domain has not been listed on Google Safe Browsing as of the latest assessment, which may contribute to its continued effectiveness in evading casual detection. The domain remains active and operational, posing an ongoing threat to users who may encounter it through phishing emails, malicious advertisements, or compromised third-party sites. Response actions have been limited to partial blocklisting, with no evidence of takedown requests or registrar enforcement. The remaining risk is classified as high due to the domain’s persistence, SSL certification, and targeted impersonation of a well-known brand. Users are advised to avoid interaction with the domain, and organizations should implement network-level blocking for 156.227.113.10 and m.yh2861.com to mitigate credential theft and financial fraud risks.

Gönderilen kanıt anlık görüntüsü

Gönderildi
Kayıt defteri kayıtları
1
Vaka kimliği
PD-20260520-10DEC1
Yakalanan sayfa başlığı
银河娱乐-银河娱乐(中文)官方网站
PDF belgesi
PDF kanıtı
Kanıtın tam metni
Policy Violations:
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
VirusTotal
VirusTotal
19 det.
URLQuery
URLQuery
3 threat alerts
DNS Security
5/14
CF Radarı
Zararlı
TLS sertifikası
Let's Encrypt
Yaş
3 mo New
Gözlemlenen durum
Bilinen son aktif HTTP 200
PhishDestroy
DestroyList
Listelenmiş
Reports Sent
1

Data Coverage

VirusTotal 19 / 91 URLQuery 3 threat-system alerts PhishStats checked — no match recorded OTX no community references CF Radarı provider verdict: malicious URLScan capture saklanan rapor URLScan verdict Analiz tamamlandı DNS engellemeleri 5/14 TLS valid certificate, 47d WHOIS 3 mo old Ekran görüntüsü 3 captures · 3 sources Yönlendirme zinciri araştırılmadı
Ağ Güvenliği İstihbaratı
DNS Provider Blocks 5 / 14
Cloudflare Family Cloudflare Security Controld Adblock Controld Family Controld Malware
Threat Detection Systems 3 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS m.yh2861.com malicious Sinkholed
OpenDNS m.yh2861.com phishing Phishing Block
DNS4EU m.yh2861.com malicious Sinkholed
CF Cloudflare Radar Verdict Zararlı
Security threats Phishing Phishing

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Erişilebilirlik
12/13

Engelleme listesi kapsamı

10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026

10 izlenen harici kaynak Eşleşme yok

Kaydedilen görüntü

Sayfa başlığı
银河娱乐-银河娱乐(中文)官方网站
TLS sertifikası
Valid transport encryption · Düzenleyen Let's Encrypt · valid for 47 days

Etki Alanı Analizi

Alan adı
URLScan Verdict Analiz tamamlandı score 0 report ↗
Sunucu / ASN nginx · AS139880 OWGELS INTERNATIONAL CO., LIMITED
IP itibarı IP abuse confidence 0/100 0 reports checked 13.07.2026
Registrar (base domain) TuringSign
IP adresi 156.227.113.10 HK
Coğrafi konumHK Hong Kong, HK
AS139880 · Starbow Ltd
Registration (base domain)yh2861.com · Oluşturuldu 20.05.2026 (83d · New)
Elapsed Since First Report 6 days
Neyi ölçüyoruz Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Bilinen son aktif.
Her raporun içeriği Saklanan giden rapor kayıtları, satıcı kararları, kayıt verileri, barındırma ayrıntıları, sınıflandırmalar veya ekran görüntüleri gibi o sırada mevcut olan kanıtlara referans verebilir. Bu sayfa, teslim edilen yükün, alındığının, onaylandığının veya alıcının yaptığı eylemin tam olarak ne olduğu konusunda bir sonuç çıkarmaz.
HTTP Durumu200
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
İlk Kez Tespit Edildi20.05.2026
Submitted URLhttp://m.yh2861.com/
Ad sunucularıns1.domainnamedns.comns2.domainnamedns.com
TLS parmak izi
TLS gözlemi08.04.2026 tarihinden itibaren geçerli20.05.2026 tarihinde tarandı
TLS özne alternatif adlarım.yh22388.comm.yh2240.comm.yh22663.comm.yh22666.comm.yh2312.comm.yh23168.comm.yh2333.comm.yh2364.comm.yh2377.comm.yh2382.comm.yh2391.comm.yh2404.comm.yh2443.comm.yh2475.comm.yh2482.com+83
Favicon Hash
ICANN OVERSIGHT Registration: yh2861.com

Akreditasyon ve RAA bağlamı

Registrar accreditation and DNS abuse obligations

For the registrable domain yh2861.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Hiçbir şey otomatik olarak gönderilmez.

Teknolojiler

4 yüksek güvenli teknoloji belirlendi

Bootstrap Nginx HSTS Baidu Analytics (百度统计)
Cloudflare Radar
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

19 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed Previous stored snapshot: 19 detections
ADMINUSLabs
BitDefender
Chong Lua Dao
Cluster25
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Kaspersky
Lionic
MalwareURL
Seclookup
SOCRadar
Sophos
VIPRE
Webroot
Site Performans Analizi

Google PageSpeed Insights — mobile performance audit of m.yh2861.com · checked May 20, 2026

69
Needs Work
Performance
FCP
2.44s
First Contentful Paint
LCP
5.24s
Largest Contentful Paint
CLS
0.071
Cumulative Layout Shift
TBT
31ms
Total Blocking Time
SI
7.45s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Bu Siteden Etkilendiniz mi?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin

Herhangi Bir Alan Adını Kontrol Et

Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi

Şimdi Tara

Oltalama Olayını Bildir

Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun

Bildir

Canlı Tehdit Akışı

Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri

İzle

Gelişmelerden Haberdar Olun, Güvende Kalın

Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin

Canlı Tehdit Akışı Bu İlanı İtiraz Et

Harici araçlar

HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/m.yh2861.com"
  title="PhishDestroy threat report for m.yh2861.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Çok İçten Bir Teşekkür Mektubu

Hicivli taslak oluşturucu

Alıcı
Ücret bağlamı

Hicivli taslak. Ücret rakamları tahminidir; bu alan adına kesin olarak atfedildikleri iddia edilmez.