Güvenlik raporuna geç
Checked 09.08.2026 Ref 051D5057

MALICIOUS — CRITICAL

menbvsdhjfg.com Generic Phishing Domain Alert

menbvsdhjfg[.]com

This domain, menbvsdhjfg.com, is flagged as a high-risk generic phishing threat.

83/100 evidence score · Critical
VirusTotal
2/91
Blocklists
2 · MetaMask, SEAL
Kullanılabilirlik
Bilinen son aktif · HTTP 200
Report / Add Evidence Appeal this listing
No capture stored

Do not enter credentials, seed phrases, payment details, or personal information on this domain.

⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 2. Bir eşleşme bildiren genel engellenenler listeleri: 2. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
Jump to section
Rapor özeti

menbvsdhjfg.com — Bilinen son aktif (HTTP 200). Kanıt özeti: VirusTotal 2/91 (alphaMountain.ai, Gridinsoft); 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 83/100. Kayıt kuruluşu: GMO Internet Group.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Evidence Analysis

Ref 051D5057

This domain, menbvsdhjfg.com, is flagged as a high-risk generic phishing threat. Registered on June 15, 2026, through a registrar based in Japan, the domain currently resolves to the IP address 104.21.39.65, which is associated with Cloudflare infrastructure in Canada. Analysis of its infrastructure reveals the use of Cloudflare nameservers (carla.ns.cloudflare.com and vin.ns.cloudflare.com) and a Let's Encrypt SSL certificate (serial number E7), which are common among both legitimate and malicious domains. The domain returns an HTTP 200 status with a '404 Not Found' page title, a pattern occasionally observed in phishing domains prior to or between active campaigns, potentially indicating staging or evasion tactics. The domain appears on three security blocklists and has been included in two threat intelligence pulses, suggesting prior malicious activity or association with known phishing infrastructure. While no specific brand impersonation or scam type has been identified from the available data, the domain's inclusion in multiple threat feeds and its active blocklisting by security vendors indicate a likely intent to deceive users. Defenders should treat this domain as hostile and implement blocking measures at the DNS or network level. Given the absence of detections in recent scans, continuous monitoring for changes in behavior or content is recommended, as the domain remains active and may transition to a live phishing campaign.

Stored source results

Recorded verdicts and infrastructure observations for this domain.

VirusTotal
VirusTotal
2 det.
OTX references
TLS sertifikası
Let's Encrypt / E7 1d
Yaş
2 mo New
Gözlemlenen durum
Bilinen son aktif 200
PhishDestroy
DestroyList
Listede
Veri kapsamı12 recorded checks
VirusTotal 2 / 91 URLQuery kontrol edilmedi PhishStats kontrol edilmedi OTX 2 community references CF Radarı no data URLScan capture not submitted URLScan verdict değerlendirme yok DNS engellemeleri kontrol edilmedi TLS valid certificate, 1d WHOIS 2 mo old Ekran görüntüsü yakalanmadı Yönlendirme zinciri araştırılmadı

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Kullanılabilirlik
7/9
Tehdit Alındı
menbvsdhjfg.com tespit edildi ve kapsamlı analiz için sıraya alındı
25.06.2026
VirusTotal
2/91 recorded on VirusTotal
26.07.2026
Google Safe Browsing
25.06.2026
Engellenenler Listesi Algılama
Şu kaynakta bulunur: 2 blocklists: MetaMask, SEAL
09.08.2026
OTX Community References
2 community publication references on AlienVault OTX. References are not vendor verdicts and are excluded from the evidence score.
15.06.2026
Technical Analysis Recorded
Rapor, depolanan teknolojiyi veya adli analiz sonuçlarını içerir.
09.08.2026
Complaint Draft Available
Hiçbir gönderim kaydedilmez. Bir taslak oluşturabilir, inceleyebilir ve kendiniz uygun makama gönderebilirsiniz.
DestroyList Yayınlandı
25.06.2026
Monitoring Continues
Etki alanı erişilebilir durumda kalır veya erişimi kısıtlıdır; gelecekteki kontroller bu gözlemi güncelleyebilir.

Genel Engelleme Listesi Durumu

Etki Alanı Analizi

Alan adı
Sunucu / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Edge-IP itibarı bu etki alanıyla ilişkilendirilmez.
IP adresi 104.21.39.65 CDN
Coğrafi konumCA Toronto, CA
AS13335 · Cloudflare, Inc.
Kaynak IP, bir CDN proxy'sinin arkasına gizlenir. Uç adresine ilişkin Ters IP sonuçları ilgisiz kiracılar içerir; Kaynağı bulmak için pasif DNS veya sertifika şeffaflığı verileri gerekir.
KayıtOluşturuldu 15.06.2026 (55d · New) Expires 15.03.2027
HTTP Durumu200
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi25.06.2026
Ad sunucularıvin.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 13.05.2026scanned 15.06.2026
ICANN OVERSIGHT

Akreditasyon ve RAA bağlamı

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Hiçbir şey otomatik olarak gönderilmez.
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

2 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed First positive detection Previous stored snapshot: 0 detections
alphaMountain.ai
Gridinsoft
Kanıtlar ve Dış RaporlarIndependent lookups and source reports
Victim safety and official reportingImmediate actions and verified reporting channels
If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin
Bu Raporu YerleştirRead-only HTML widget
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/menbvsdhjfg.com"
  title="PhishDestroy threat report for menbvsdhjfg.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Çok İçten Bir Teşekkür Mektubu

Hicivli taslak oluşturucu

Alıcı
Ücret bağlamı

Hicivli taslak. Ücret rakamları tahminidir; bu alan adına kesin olarak atfedildikleri iddia edilmez.