scandclanka[.]info
“404 Not Found”
scandclanka.info — Bilinen son aktif (HTTP 200). Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 17/93 (ADMINUSLabs, alphaMountain.ai, BitDefender, CyRadar, ESET); URLQuery 3 alerts; Google Safe Browsing flagged; CF Radar malicious; PhishDestroy score 100/100. Kayıt kuruluşu: eNom.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
This domain, scandclanka.info, is identified as a high-risk credential harvesting phishing site targeting users through deceptive login portals. Analysis indicates the domain was designed to mimic legitimate services, tricking visitors into submitting sensitive credentials such as usernames, passwords, and potentially financial information. The presence of an open directory listing (Index of /) suggests incomplete or abandoned deployment, though prior versions likely hosted convincing replicas of corporate or financial institution login pages. Such infrastructure is commonly used in large-scale phishing campaigns to harvest credentials for subsequent fraud, account takeovers, or lateral movement in compromised networks. Infrastructure analysis reveals multiple technical indicators confirming malicious intent. The domain was registered on July 19, 2021, through eNom, LLC, a registrar frequently associated with abusive registrations. It resolves to the IP address 162.240.210.218, hosted on AS46606 (Unified Layer), an autonomous system with a history of hosting phishing and malware distribution sites. Detection metrics further substantiate the threat: 17 out of 95 security vendors on VirusTotal flag the domain as malicious, while it appears on two independent security blocklists. Additional protections include blocking by PhishDestroy and PhishingDB, and classification as phishing by Google Safe Browsing. The domain’s SSL certificate, issued by Let’s Encrypt (R13), provides minimal encryption but does not mitigate the underlying threat. Users who visited scandclanka.info should take immediate remedial action to mitigate potential compromise. Any credentials entered on the site should be considered exposed and must be changed across all platforms where reused. Multi-factor authentication should be enabled on critical accounts to prevent unauthorized access. System scans using updated endpoint protection tools are recommended to detect potential malware or browser-based exploits. Network logs should be reviewed for connections to 162.240.210.218 or related domains registered through eNom. Organizations should update internal blocklists to include this domain and its associated IP to prevent future access. Given the domain’s current offline status, users should remain vigilant for similar phishing attempts using newly registered lookalike domains.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| CIRA Canadian Shield DNS | scandclanka.info |
malicious | Sinkholed |
| OpenPhish | scandclanka.info |
phishing | Phishing - Australian Government |
| DNS0 Zero | scandclanka.info |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
Registrar accreditation and DNS abuse obligations
For this gTLD, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Teknolojiler · 1 identified
Most widely used open-source HTTP server software.
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of scandclanka.info · checked Mar 2, 2026
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin