rosenblattpremium[.]com
“Welcome to | Rosenblatt Premium”
Kanıt özeti
Rosenblattpremium.com was registered on 21 February 2026 and resolves to the IPv4 address 107.172.61.186, which belongs to AS36352 HostPapa in the United States. The domain is currently taken offline, but historical scans show it was actively serving content before removal. The site presented the page title “Welcome to | Rosenblatt Premium” and was identified as a tech‑support scam that impersonates Google. No legitimate Google branding appears in the title, indicating the impersonation is limited to textual claims. The SSL certificate issued for the host is identified only as “R11”, providing no further validation of the certificate authority.
Multiple security services have flagged the domain. VirusTotal recorded five detections out of ninety‑three scanners, and the Gridinsoft trust score assigned a rating of 0 / 100, the lowest possible confidence level. The domain appears on a single external blocklist and is explicitly listed by the PhishDestroy service as malicious. These indicators collectively suggest a high likelihood of malicious intent. Because the domain’s hosting provider, HostPapa, is a shared‑hosting environment, the same IP address may be reused by unrelated legitimate sites, so care must be taken when applying IP‑based blocks.
However, the combination of a low trust score, multiple vendor detections, and the confirmed tech‑support scam classification justifies adding the domain name itself to deny‑list rules across email gateways, web proxies, and DNS filtering solutions. Defenders should also monitor traffic to 107.172.61.186 for any residual activity and consider tightening outbound rules that could allow communication with the host. Open questions remain regarding the full payload delivered by the site, the exact phishing kit used, and whether additional infrastructure (such as command‑and‑control servers) is associated with the same IP range.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 12.08.2026
Adli İstihbarat
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin