Güvenlik raporuna geç
⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 18. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
ABUSE NOTICE · 7D+ OPEN Outgoing abuse reports are recorded; the latest stored availability evidence still shows the domain reachable.
Notification and current-status evidence

The sent-report ledger records the first outgoing report at . A report was sent to the recorded registrar; contact details remain in Domain Intelligence. The latest stored availability evidence still shows the domain reachable; 4 months has elapsed since the first outgoing report.

ICANN RAA §3.18 describes registrar abuse-contact and handling obligations. This section records outgoing timestamps and later availability. It does not by itself prove receipt, acknowledgement, investigation, remediation, or contractual non-compliance.

Elapsed since first report
4 months
Reports sent
1
Current status
HTTP 502 at latest stored check
Etki alanı güvenliği ve tehdit istihbaratı

rabby-web[.]at

“Rabby Wallet | Extension Download | Login”

Tehdit kararı Kritik 95/100 kanıt puanı
Kullanılabilirlik Sunucu hatası En son saklanan yanıt sonuçsuz kaldı
VirusTotal algılamaları: 18/91 Spamhaus DBL: DBL_PHISH URLQuery threat systems: 3 alerts Marka kimliğine bürünme: Rabby
OTX: 2 refs 28.03.2026 Rabby 1 Report Sent

Kanıt özeti

KRİTİK
Evidence score
95/100

This domain, rabby-web.at, poses a direct threat as a brand impersonation site targeting Rabby, a cryptocurrency wallet service. Analysis indicates the domain was designed to mimic the official Rabby platform, presenting itself as a legitimate extension download and login portal. Such impersonation is commonly used to distribute malicious browser extensions or harvest user credentials, potentially leading to unauthorized access to crypto wallets and financial theft. The page title, 'Rabby Wallet | Extension Download | Login,' reinforces the deception by closely resembling authentic Rabby branding, increasing the likelihood of user engagement under false pretenses.

Technical evidence confirms the domain's malicious nature. VirusTotal reports 20 out of 95 security vendors flagging rabby-web.at as malicious, while it appears on one security blocklist. The domain was registered on March 28, 2026, through Timeweb.ru, a registrar frequently associated with suspicious domains. Infrastructure analysis reveals the domain resolved to the IP address 213.226.125.138, hosted by TimeWeb Ltd in Russia. The SSL certificate, issued by Let's Encrypt (R12), does not mitigate the risk, as threat actors commonly use valid certificates to lend false legitimacy to malicious sites. The domain's current offline status suggests takedown efforts, but its prior activity remains a concern for users who may have interacted with it.

Users who visited rabby-web.at or downloaded content from it should take immediate action. Disconnect any devices used to access the site from networks and perform a full antivirus scan to detect potential malware. If credentials were entered, reset passwords for Rabby and any other accounts using the same credentials, and enable multi-factor authentication where available. Monitor crypto wallet transactions for unauthorized activity and consider revoking access to any suspicious browser extensions. Given the domain's association with brand impersonation, users should verify the authenticity of any Rabby-related communications or downloads by cross-referencing with the official Rabby website or support channels.

Gönderilen kanıt anlık görüntüsü

Gönderildi
Kayıt defteri kayıtları
1
Vaka kimliği
PD-20260328-C61E7B
Yakalanan sayfa başlığı
Rabby Wallet | Extension Download | Login
PDF belgesi
PDF kanıtı
Kanıtın tam metni
Policy Violations:
Illegal Activities: Active phishing operation targeting victims
Fraud & Deception: Impersonation of legitimate services
Identity Theft: Collection of credentials under false pretenses
Applicable Laws (Unknown):
International Anti-Cybercrime Regulations
Budapest Convention on Cybercrime
Universal Fraud Prevention Laws
Phishing activities violate international cybercrime conventions and Unknown's domestic fraud laws.
Action Required: This evidence-backed report demonstrates clear violations requiring suspension per your policies. Continued hosting exposes your organization to regulatory scrutiny and potential legal liability.
VirusTotal
VirusTotal
18 det.
URLQuery
URLQuery
3 threat alerts
OTX references
CF Radarı
Zararlı
TLS sertifikası
Süresi dolmuş veya doğrulanmamış -65d
Yaş
5 mo
Gözlemlenen durum
Sunucu hatası HTTP 502
PhishDestroy
DestroyList
Listelenmiş
Reports Sent
1

Data Coverage

VirusTotal 18 / 91 URLQuery 3 threat-system alerts PhishStats kontrol edilmedi OTX 2 community references CF Radarı provider verdict: malicious URLScan capture saklanan rapor URLScan verdict Analiz tamamlandı DNS engellemeleri kontrol edilmedi TLS Süresi dolmuş veya doğrulanmamış WHOIS 5 mo old Ekran görüntüsü 3 captures · 3 sources Yönlendirme zinciri araştırılmadı
Ağ Güvenliği İstihbaratı
Threat Detection Systems 3 alerts
Detection System Indicator Verdict Alert
Quad9 DNS rabby-web.at malicious Sinkholed
OpenDNS rabby-web.at phishing Phishing Block
DNS4EU rabby-web.at malicious Sinkholed
CF Cloudflare Radar Verdict Zararlı
Security threats Phishing Phishing

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Erişilebilirlik
13/14

Engelleme listesi kapsamı

10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026

10 izlenen harici kaynak Eşleşme yok

Tespit zaman çizelgesi

  1. Cloudflare Radar

    Cloudflare Radar taraması kaydedildi · Taramayı aç

Kaydedilen görüntü

Etki Alanı Analizi

Alan adı
URLScan Verdict Analiz tamamlandı score 0 report ↗
Sunucu / ASN nginx · AS9123 JSC TIMEWEB
IP itibarı IP abuse confidence 0/100 0 reports checked 14.07.2026
Kayıt kuruluşu Timeweb.ru MY(MY)
IP adresi 213.226.125.138 RU
Coğrafi konumRU St Petersburg, RU
AS9123 · TimeWeb Ltd
KayıtOluşturuldu 28.03.2026 (136d)
HTTP Durumu502 Error
Elapsed Since First Report 131 days
Neyi ölçüyoruz Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Sunucu hatası.
Her raporun içeriği Saklanan giden rapor kayıtları, satıcı kararları, kayıt verileri, barındırma ayrıntıları, sınıflandırmalar veya ekran görüntüleri gibi o sırada mevcut olan kanıtlara referans verebilir. Bu sayfa, teslim edilen yükün, alındığının, onaylandığının veya alıcının yaptığı eylemin tam olarak ne olduğu konusunda bir sonuç çıkarmaz.
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
İlk Kez Tespit Edildi28.03.2026
DOM Analysisanalyzed 29.07.2026DOM analysis score 0/1003 brand signals
TLS parmak izi
TLS gözlemi09.03.2026 tarihinden itibaren geçerli28.03.2026 tarihinde tarandı
Sayfa başlığı
Rabby Wallet | Extension Download | Login
Impersonates
Across Ethereum Rabby
TLS sertifikası
Süresi dolmuş veya doğrulanmamış · Düzenleyen Let's Encrypt / R12

Adli İstihbarat

External Scripts 1
https://performance.radar.cloudflare.com/beacon.js

Teknolojiler

1 yüksek güvenli teknoloji belirlendi

Nginx
Cloudflare Radar
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

18 / 91 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed Previous stored snapshot: 20 detections
ADMINUSLabs
ChainPatrol
alphaMountain.ai
BitDefender
CRDF
CyRadar
ESET
Forcepoint ThreatSeeker
Fortinet
G-Data
Kaspersky
Lionic
Seclookup
SOCRadar
Sophos
ThreatHive
VIPRE
Webroot
Site Performans Analizi

Google PageSpeed Insights — mobile performance audit of rabby-web.at · checked Mar 28, 2026

62
Needs Work
Performance
FCP
0.94s
First Contentful Paint
LCP
3.94s
Largest Contentful Paint
CLS
0.473
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
6.2s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Bu Siteden Etkilendiniz mi?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin

Herhangi Bir Alan Adını Kontrol Et

Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi

Şimdi Tara

Oltalama Olayını Bildir

Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun

Bildir

Canlı Tehdit Akışı

Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri

İzle

Gelişmelerden Haberdar Olun, Güvende Kalın

Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin

Canlı Tehdit Akışı Bu İlanı İtiraz Et

Harici araçlar

HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/rabby-web.at"
  title="PhishDestroy threat report for rabby-web.at"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>