Güvenlik raporuna geç
⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 11. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
Etki alanı güvenliği ve tehdit istihbaratı

news[.]cistronixperu[.]com

“Just another WordPress site -”

Tehdit kararı Kritik 88/100 kanıt puanı
Kullanılabilirlik Doğrulanmamış Mevcut erişilebilirlik doğrulanmadı
VirusTotal algılamaları: 11/91 Dolandırıcılık türü: Crypto Scam
22.03.2026
Rapor özeti

news.cistronixperu.com — Doğrulanmamış. Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VirusTotal 11/91 (ADMINUSLabs, alphaMountain.ai, Chong Lua Dao, Cluster25, ESET); PhishDestroy score 88/100. Kayıt kuruluşu: Hosting Concepts.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Kanıt özeti
KRİTİK
Ref
8BD843BF
Puan
88/100

Analysis of the domain news.cistronixperu.com indicates active involvement in crypto-related phishing operations, with multiple technical indicators supporting its malicious classification. The domain was registered on May 12, 2004, through Hosting Concepts B.V. d/b/a Registrar.eu, and currently resolves to the IP address 173.236.253.23, hosted by DreamHost in the United States. Despite its long registration history, the domain exhibits characteristics consistent with recent malicious activity, including a 301 HTTP redirect status and a Scamadviser trust score of 1 out of 100, suggesting minimal legitimacy. Infrastructure analysis reveals the use of WordPress as the underlying content management system, alongside MySQL, PHP, and Apache HTTP Server. Additional technologies detected include All in One SEO, Moment.js, jQuery Migrate, and jQuery, which are commonly exploited in phishing campaigns to enhance functionality or evade detection. The domain is flagged by 10 out of 95 security vendors on VirusTotal, and it appears on two security blocklists, including PhishDestroy and PhishingDB. The SSL certificate is issued by Let’s Encrypt (R12), a detail often leveraged by threat actors to lend superficial credibility to malicious sites. The page title, 'Just another WordPress site,' is a default placeholder, further indicating a lack of legitimate configuration or intent. Gridinsoft assigns the domain a trust score of 0 out of 100, reinforcing its classification as high-risk. While the domain’s age might suggest historical legitimacy, its current behavior aligns with crypto scam operations, a pattern observed in other recently compromised or repurposed domains. Defenders should treat this domain as actively malicious and prioritize blocking or monitoring any connections to 173.236.253.23 or associated subdomains. Further investigation into the hosting infrastructure may reveal additional linked domains or campaigns.

VirusTotal
VirusTotal
11 det.
DNS Security
4/14
URLScan
URLScan
ScamAdviser
Scamadviser
1/100
TLS sertifikası
Let's Encrypt
Yaş
22.3 yr
Gözlemlenen durum
Doğrulanmamış
PhishDestroy
DestroyList
Listede
Veri kapsamı VirusTotal 11 / 91 URLQuery rapor saklandı — ayrıntılı karar bekleniyor PhishStats checked — no match recorded OTX no community references CF Radarı scan completed URLScan capture saklanan rapor URLScan verdict değerlendirme yok DNS engellemeleri 4/14 TLS valid certificate, 61d WHOIS 271 mo old Ekran görüntüsü 2 captures · 2 sources Yönlendirme zinciri araştırılmadı Scamadviser 1/100
Ağ Güvenliği İstihbaratı
DNS Provider Blocks 4 / 14
Brand Tron Controld Adblock Controld Family Controld Malware

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Kullanılabilirlik
10/12

Genel Engelleme Listesi Durumu

Kaydedilen görüntü

Sayfa başlığı
Just another WordPress site -
TLS sertifikası
Valid transport encryption · Düzenleyen Let's Encrypt · valid for 61 days

Etki Alanı Analizi

Alan adı
Sunucu / ASN Apache · AS26347 New Dream Network, LLC
IP itibarı abuse score 0/100 0 reports checked 13.08.2026
Registrar (base domain) Hosting Concepts NL(NL)
IP adresi 173.236.253.23 US
Coğrafi konumUS Ashburn, US
AS26347 · DreamHost
Registration (base domain)cistronixperu.com · Oluşturuldu 12.05.2004
Elapsed Since First Report 38 days
Neyi ölçüyoruz Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Doğrulanmamış.
Her raporun içeriği Saklanan giden rapor kayıtları, satıcı kararları, kayıt verileri, barındırma ayrıntıları, sınıflandırmalar veya ekran görüntüleri gibi o sırada mevcut olan kanıtlara referans verebilir. Bu sayfa, teslim edilen yükün, alındığının, onaylandığının veya alıcının yaptığı eylemin tam olarak ne olduğu konusunda bir sonuç çıkarmaz.
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi22.03.2026
IoC Extractionscanned 29.07.20260 wallet · 0 Telegram IoCs
Submitted URLhttp://news.cistronixperu.com/
Ad sunucularıns1.dreamhost.comns3.dreamhost.com
TLS Fingerprint
TLS Observationvalid from 21.02.2026scanned 25.03.2026
TLS SAN Domainswww.news.cistronixperu.com
ICANN OVERSIGHT Registration: cistronixperu.com

Akreditasyon ve RAA bağlamı

Registrar accreditation and DNS abuse obligations

For the registrable domain cistronixperu.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Hiçbir şey otomatik olarak gönderilmez.
Teknolojiler · 9 identified
WordPress
CMS

Open-source CMS powering over 40% of websites worldwide.

MySQL
Databases

Open-source relational database management system.

PHP
Programming languages

Server-side scripting language designed for web development.

Apache HTTP Server
Web servers

Most widely used open-source HTTP server software.

A
All in One SEO
Moment.js
jQuery Migrate
JavaScript libraries

Plugin to detect and restore deprecated jQuery features.

jQuery
JavaScript libraries

Fast, small JavaScript library simplifying HTML manipulation, event handling, and Ajax.

Hammer.js
Detected via Cloudflare Radar · Wappalyzer engine
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

11 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed Previous stored snapshot: 10 detections
ADMINUSLabs
alphaMountain.ai
Chong Lua Dao
Cluster25
ESET
Fortinet
Gridinsoft
Lionic
SOCRadar
Sophos
Webroot
Site Performans Analizi

Google PageSpeed Insights — mobile performance audit of news.cistronixperu.com · checked Mar 22, 2026

74
Needs Work
Performance
FCP
2.94s
First Contentful Paint
LCP
5.43s
Largest Contentful Paint
CLS
0.017
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
3.52s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Kanıtlar ve Dış Raporlar

Bu Siteden Etkilendiniz mi?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin

Herhangi Bir Alan Adını Kontrol Et

Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi

Şimdi Tara

Oltalama Olayını Bildir

Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun

Bildir

Canlı Tehdit Akışı

Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri

İzle

Gelişmelerden Haberdar Olun, Güvende Kalın

Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin

Canlı Tehdit Akışı Bu İlanı İtiraz Et
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/news.cistronixperu.com"
  title="PhishDestroy threat report for news.cistronixperu.com"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Çok İçten Bir Teşekkür Mektubu

Hicivli taslak oluşturucu

Alıcı
Ücret bağlamı

Hicivli taslak. Ücret rakamları tahminidir; bu alan adına kesin olarak atfedildikleri iddia edilmez.