molar-canal[.]s3[.]us-east-2[.]amazonaws[.]com
molar-canal.s3.us-east-2.amazonaws.com — Doğrulanmamış. Marka kimliğine bürünme: Amazon; Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 4/91 (alphaMountain.ai, Fortinet, Gridinsoft, Sophos); PhishDestroy score 71/100. Kayıt kuruluşu: MarkMonitor.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
The domain molar-canal.s3.us-east-2.amazonaws.com is currently active and identified as a generic phishing threat specializing in fake login credential harvesting. Analysis indicates this infrastructure mimics legitimate cloud storage endpoints, likely targeting users of Amazon Web Services (AWS) or affiliated platforms to capture authentication credentials. No specific brand impersonation has been confirmed, but the domain structure and hosting pattern align with credential theft campaigns exploiting cloud service trust. Technical indicators confirm the domain was registered through MarkMonitor Inc., with a creation date of May 12, 2026, which is anomalous given current timelines and suggests potential typo-squatting or preemptive registration for malicious use. It resolves to the IP address 3.5.92.123, located in the AWS EC2 us-east-2 region, and presents an SSL certificate issued by Amazon (Amazon RSA 2048 M01). VirusTotal detection metrics show 4 of 95 security vendors flagging this domain as malicious. The domain appears on one security blocklist and is actively blocked by at least one threat intelligence feed, reinforcing its classification as high-risk. Current status remains active, with no evidence of takedown or remediation. Organizations and users are advised to implement immediate network-level blocking of the domain and its associated IP address (3.5.92.123) via firewalls or DNS filtering. Security teams should monitor for credential submission attempts to this endpoint, particularly from cloud administration or storage-related workflows. Endpoint detection rules should be updated to include this domain in phishing and credential theft signatures. Given the use of legitimate cloud infrastructure, user awareness training should emphasize scrutiny of cloud storage URLs, even when hosted on recognized platforms.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
VirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin