Güvenlik raporuna geç
⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 23. Bir eşleşme bildiren genel engellenenler listeleri: 1. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
Etki alanı güvenliği ve tehdit istihbaratı

productionmaza[.]bond

“Buy”

Tehdit kararı Kritik 100/100 kanıt puanı
Kullanılabilirlik İçerik kullanılamıyor En son gözlemde içerik mevcut değildi
VirusTotal algılamaları: 23/91 Spamhaus DBL: DBL_MALWARE Saklanan engelleme listesi eşleşmeleri: 1 URLQuery threat systems: 4 alerts Marka kimliğine bürünme: 1inch
OTX: 20 refs 30.07.2026 1inch 1 Report Sent CDN
Rapor özeti

productionmaza.bond — İçerik kullanılamıyor (HTTP 502). Marka kimliğine bürünme: 1inch; Dolandırıcılık türü: Impersonation. Kanıt özeti: VirusTotal 23/91 (ADMINUSLabs, alphaMountain.ai, AlphaSOC, BitDefender, CyRadar); URLQuery 4 alerts; Spamhaus DBL_MALWARE; 1 external blocklist match (CryptoFirewall); CF Radar malicious; PhishDestroy score 100/100. Kayıt kuruluşu: Global Domain Group.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Kanıt özeti
KRİTİK
Ref
314E9AE5
Puan
100/100

This domain, productionmaza.bond, is flagged as a high-risk generic phishing threat as of July 30, 2026. It was created on March 23, 2026, and registered through Global Domain Group LLC. Infrastructure analysis shows it resolves to IP address 104.21.72.227 and uses Cloudflare nameservers (lee.ns.cloudflare.com and marjory.ns.cloudflare.com). Security detection is substantial: VirusTotal reports 25 of 91 security vendors flag this domain, and it is blocked by PhishDestroy and CryptoFirewall.

The domain appears on 2 security blocklists. No specific brand impersonation or page content is documented in the available data, so the exact nature of the phishing operation remains unconfirmed. The domain is still active.

Defenders should treat this as an active phishing domain, monitor for any associated email or URL campaigns, and consider blocking it at the network level to prevent user exposure. The high detection rate across multiple security vendors supports a strong presumption of malicious intent, even without detailed page content analysis.

VirusTotal
VirusTotal
23 det.
URLQuery
URLQuery
4 threat alerts
OTX references
CF Radarı
Zararlı
URLScan
URLScan
Gridinsoft
1/100
TLS sertifikası
Let's Encrypt
Yaş
5 mo
Gözlemlenen durum
İçerik kullanılamıyor 502
PhishDestroy
DestroyList
Listede
Reports Sent
1
Veri kapsamı VirusTotal 23 / 91 URLQuery 4 threat-system alerts PhishStats kontrol edilmedi OTX 20 community references CF Radarı provider verdict: malicious URLScan capture saklanan rapor URLScan verdict Analiz tamamlandı DNS engellemeleri kontrol edilmedi TLS valid certificate, 78d WHOIS 5 mo old Ekran görüntüsü 4 captures · 3 sources Yönlendirme zinciri araştırılmadı Gridinsoft 1/100
Ağ Güvenliği İstihbaratı
Threat Detection Systems 4 alerts
Detection System Indicator Verdict Alert
Cloudflare DNS productionmaza.bond malicious Sinkholed
DigiCert UltraDNS productionmaza.bond malicious Sinkholed
Quad9 DNS productionmaza.bond malicious Sinkholed
DNS4EU productionmaza.bond malicious Sinkholed
CF Cloudflare Radar Verdict Zararlı
Malware Malware Security threats

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Kullanılabilirlik
18/18
Sent Report Recorded
Stored sent-report record for registrar Global Domain Group LLC, hosting provider, 1 abuse contact
abuse@globaldomaingroup.com
30.07.2026

Genel Engelleme Listesi Durumu

Kaydedilen görüntü

Sayfa başlığı
Buy
Impersonates
1inch Chainlink Cosmos Ethereum MakerDAO Polygon Solana Ton +2
TLS sertifikası
Valid transport encryption · Düzenleyen Let's Encrypt · valid for 78 days

Etki Alanı Analizi

Alan adı
URLScan Verdict Analiz tamamlandı score 0 report ↗
Telegram IoCs 2 extracted https://t.me/hikaricpn https://t.me/hikaricp
Sunucu / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Edge-IP itibarı bu etki alanıyla ilişkilendirilmez.
Kayıt kuruluşu Global Domain Group US(US)
IP adresi 104.21.72.227 CDN
Coğrafi konumCA Toronto, CA
AS13335 · Cloudflare, Inc.
Kaynak IP, bir CDN proxy'sinin arkasına gizlenir. Uç adresine ilişkin Ters IP sonuçları ilgisiz kiracılar içerir; Kaynağı bulmak için pasif DNS veya sertifika şeffaflığı verileri gerekir.
KayıtOluşturuldu 23.03.2026 (146d) Expires 23.03.2027
HTTP Durumu502 Error
İlk erişilemezliğe kadar geçen süre 8 days
Neyi ölçüyoruz Depolanan ilk kötüye kullanım raporundan içeriğin kullanılamadığına dair ilk gözleme kadar geçen süre. Bu, nedeni belirlemez.
Her raporun içeriği Saklanan giden rapor kayıtları, satıcı kararları, kayıt verileri, barındırma ayrıntıları, sınıflandırmalar veya ekran görüntüleri gibi o sırada mevcut olan kanıtlara referans verebilir. Bu sayfa, teslim edilen yükün, alındığının, onaylandığının veya alıcının yaptığı eylemin tam olarak ne olduğu konusunda bir sonuç çıkarmaz.
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi30.07.2026
DOM Analysisanalyzed 31.07.2026score 98/10010 brand signals
IoC Extractionscanned 01.08.20260 wallet · 2 Telegram IoCs
Submitted URLhttps://productionmaza.bond/
Ad sunucularılee.ns.cloudflare.commarjory.ns.cloudflare.com
TLS Fingerprint
TLS Observationvalid from 19.07.2026scanned 31.07.2026
Favicon Hash
Case ID
SHORTDOT BÖLGESİ · KAMUYA AÇIK KANIT .bond

ShortDot zone evidence

The linked repository preserves daily zone observations across seven ShortDot-operated TLDs, including registration volume and abuse-related indicators. This registry context is supporting background and is not an independent detection for the domain in this report.

ShortDot SA · Luxembourg 7 bölge · tüm bölgelere ait kanıtlar her gün güncellenir ShortDot kanıt deposunu aç
ICANN OVERSIGHT

Akreditasyon ve RAA bağlamı

Registrar accreditation and DNS abuse obligations

For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.

Accreditation is a contract, not a safety certification.

RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.

Accountability draft Hiçbir şey otomatik olarak gönderilmez.
Teknolojiler · 7 identified
Chart.js
JavaScript graphics

Chart.js is an open-source JavaScript library that allows you to draw different types of charts by using the HTML5 canvas element.

www.chartjs.org 75% confidence
jsDelivr
CDN

JSDelivr is a free public CDN for open-source projects. It can serve web files directly from the npm registry and GitHub repositories without any configuration.

www.jsdelivr.com %100 güven
Facebook Pixel
Analytics

Facebook pixel is an analytics tool that allows you to measure the effectiveness of your advertising.

facebook.com %100 güven
cdnjs
CDN

cdnjs is a free distributed JS library delivery service.

cdnjs.com %100 güven
Cloudflare Browser Insights
Analytics RUM

Cloudflare Browser Insights is a tool that measures the performance of websites from the perspective of users.

www.cloudflare.com %100 güven
Cloudflare
CDN

Cloudflare is a web-infrastructure and website-security company, providing content-delivery-network services, DDoS mitigation, Internet security, and distributed domain-name-server services.

www.cloudflare.com %100 güven
HTTP/3
Miscellaneous

HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.

httpwg.org %100 güven
Detected via Cloudflare Radar · Wappalyzer engine
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

23 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed First positive detection Previous stored snapshot: 25 detections
ADMINUSLabs
alphaMountain.ai
AlphaSOC
BitDefender
CyRadar
Dr.Web
ESET
ESTsecurity
Emsisoft
Forcepoint ThreatSeeker
Fortinet
G-Data
Gridinsoft
Kaspersky
LevelBlue
Lionic
Seclookup
SOCRadar
Sophos
Sucuri SiteCheck
Viettel Threat Intelligence
VIPRE
Webroot
Site Performans Analizi

Google PageSpeed Insights — mobile performance audit of productionmaza.bond · checked Jul 30, 2026

66
Needs Work
Performance
FCP
3.67s
First Contentful Paint
LCP
4.57s
Largest Contentful Paint
CLS
0.035
Cumulative Layout Shift
TBT
276ms
Total Blocking Time
SI
5.7s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor
Stored Capture Evidence 1 snapshot

Timestamped response metadata retained by the local collection pipeline. Each value below belongs to the displayed archive time.

Archived HTTP response HTTP 200
Requested URL: https://productionmaza.bond/
Buy & Sell Bitcoin, Ethereum | Cryptocurrency Exchange | HIKARICP
The leading cryptocurrency exchange. Buy, sell, trade BTC, ETH and other altcoins. Enter the spot and futures market or make safe bets on your coins.
Müdahale
HTTP 200
HTML body
462.3 KB
Compressed
80.0 KB
Links
84 internal · 0 external
Detected technologies
jquerycloudflare
Selected response headers
Content-Type: text/html;charset=UTF-8
Cache-Control: no-cache, no-store, max-age=0, must-revalidate
CF-Cache-Status: DYNAMIC
Content-Encoding: gzip
Server: cloudflare
Security headers present
X-Frame-OptionsX-Content-Type-OptionsX-XSS-Protection
HSTS: not observed DNSSEC: not observed WAF / firewall: observed Cloaking flag: not observed
Favicon fingerprint: 606375a97e3c2a44350ef2887d186d385e34bcf8e853c61c6dd547c7cc3b46b2
Open Graph title: Buy & Sell Bitcoin, Ethereum | Cryptocurrency Exchange | HIKARICP
Open Graph description: The leading cryptocurrency exchange. Buy, sell, trade BTC, ETH and other altcoins. Enter the spot and futures market or make safe bets on your coins.
All stored response-header names (19)
DateContent-TypeTransfer-EncodingConnectionVaryX-Content-Type-OptionsX-XSS-ProtectionCache-ControlPragmaExpiresX-Frame-OptionsContent-LanguageNelReport-Tocf-cache-statusContent-EncodingServerCF-RAYalt-svc
Site Yapılandırma Analizi
Stored observations are retained with their original collection time.
robots.txt Present · HTTP 200
Valid robots.txt; no Disallow/Allow paths were extracted.

Kanıtlar ve Dış Raporlar

Submitted Evidence Snapshot
Sent: Ledger records: 1 Case ID: PD-20260730-1B6A63 Recipient: abuse@globaldomaingroup.com
URLScan evidence VirusTotal evidence URLQuery evidence Screenshot 275.5 KB
Blocklist hits included with submission: CryptoFirewall

Bu Siteden Etkilendiniz mi?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin

Herhangi Bir Alan Adını Kontrol Et

Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi

Şimdi Tara

Oltalama Olayını Bildir

Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun

Bildir

Canlı Tehdit Akışı

Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri

İzle

Gelişmelerden Haberdar Olun, Güvende Kalın

Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin

Canlı Tehdit Akışı Bu İlanı İtiraz Et
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/productionmaza.bond"
  title="PhishDestroy threat report for productionmaza.bond"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>

Çok İçten Bir Teşekkür Mektubu

Hicivli taslak oluşturucu

Alıcı
Ücret bağlamı

Hicivli taslak. Ücret rakamları tahminidir; bu alan adına kesin olarak atfedildikleri iddia edilmez.