scanusdt[.]org
scanusdt.org için kimlik avı ve güvenlik kontrolü
“AML Check”
scanusdt.org — İçerik kullanılamıyor (HTTP 502). Marka kimliğine bürünme: Csgo; Dolandırıcılık türü: Crypto Scam. Kanıt özeti: VT 1/95 (alphaMountain.ai); URLQuery 0; URLScan malicious; GSB no flag; BL 1 (ScamSniffer); PD 61/100. Kayıt kuruluşu: Web Commerce Communica….
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy first observed scanusdt.org on Feb 26, 2026. Positive findings were recorded by VirusTotal, ScamSniffer, and URLScan. Evidence score: 61/100.
VirusTotal recorded 1 detections among 95 engines: alphaMountain.ai on Feb 23, 2026 at 07:15 UTC. The external blocklist snapshot contained 1 match (ScamSniffer) on Aug 7, 2026 at 10:20 UTC. URLScan returned a malicious verdict with score 100. AlienVault OTX listed 1 community pulse reference (not vendor detections) on Mar 1, 2026 at 00:16 UTC. URLQuery recorded no positive detection. Google Safe Browsing returned no flag on Mar 3, 2026 at 04:14 UTC.
HTTP 502 was recorded on Aug 7, 2026 at 01:25 UTC; content was unavailable. Registration records list Web Commerce Communications Limited dba WebNic.cc as the registrar and Feb 21, 2026 as the registration date. At collection time, the domain resolved to 194.87.110.74. Collected metadata identifies Csgo as the apparent target. Captured page title: “AML Check”. PhishDestroy classified the observed content as Crypto Scam. DOM analysis completed on Mar 23, 2026 at 23:11 UTC; stored DOM score 61/100. IoC extraction completed on Aug 1, 2026 at 04:26 UTC; stored 0 format-validated wallet addresses and 2 Telegram indicators.
Stored full analysis24.07.2026
scanusdt.org was observed hosting a cryptocurrency‑related brand impersonation campaign targeting the CS:GO community. The site was registered on 21 February 2026 through Web Commerce Communications Limited dba WebNic.cc and uses the nameservers ns100.webnic.cc and ns101.webnic.cc. DNS resolution points to the IP address 194.87.110.74, which belongs to ASN 48347 operated by JSC Mediasoft ekspert in Russia. An SSL certificate identified as “R11” is present, but the site is currently taken offline, and HTTP probes return no active content. The page title returned by the server is “AML Check”, a generic term often associated with anti‑money‑laundering checks, but no further page content has been captured.
Reputation services have flagged the domain. PhishDestroy and ScamSniffer list it as a confirmed malicious site, and it appears on two additional security blocklists. VirusTotal scans show that one of ninety‑five antivirus engines flagged the domain, indicating at least minimal malicious behavior. AlienVault OTX records a single threat‑intel pulse referencing the domain, reinforcing the classification as a crypto scam.
The elevated risk rating reflects the brand impersonation of CS:GO and the potential for financial loss. Uncertainties remain regarding the exact phishing kit or the specific user‑interaction flow, as no live page was available for analysis. Defenders should continue to block the domain at network perimeter and DNS layers, monitor for any re‑hosting attempts on related IP ranges, and advise users, especially those active in the CS:GO ecosystem, to disregard any unsolicited communications referencing “AML Check” or similar terminology. Ongoing observation of the hosting ASN and registrar may reveal future campaigns using the same infrastructure.
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Kaydedilen görüntü
Etki Alanı Analizi
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
ICANN OVERSIGHT
Akreditasyon ve RAA bağlamı
Akreditasyon ve RAA bağlamı
ICANN Parasını Aldı. Hesap Verebilirlik Gelmedi.
Bu gTLD için, yukarıdaki alan adı kayıt kuruluşu bir ICANN sözleşmesi kapsamında faaliyet gösterir. ICANN; kayıt, yenileme ve transferlerle bağlantılı yıllık, değişken ve işlem bazlı ücretler tahsil eder.
Akreditasyon: paraya çevrildi. Hesap verebilirlik: lütfen daha sonra tekrar kontrol edin.
Sonra sihir başlar: ICANN RAA §3.18'i yazar, alan adı kayıt kuruluşu kendi müşteri tabanındaki kötüye kullanımı soruşturur ve her katman bir başkasının harekete geçmesini beklerken mağdurlar kanıtları ücretsiz sunar. Bu, mağdurların kendilerini daha güvende hissetmelerini sağlıyorsa harika—demek ki fatura işe yaramış.
VirusTotal Analizi
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Bu Rapor Hakkında: scanusdt.org
Bu rapor, PhishDestroy'un kullanabileceği en son saklanan kanıtları sunar. Kaynak zaman damgaları mümkün olan yerlerde gösterilir; Stok durumu ve satıcı kararları toplama sonrasında değişebilir.
Yakalanan site “AML Check” sayfa başlığını gösteriyordu ve Csgo'nin kimliğine bürünüyor olabilir.
07.08.2026 itibarıyla scanusdt.org, 1 güvenlik motorlarından tespitler aldı.
Bu listenin hatalı olduğunu düşünüyorsanız itirazda bulunmak. Metodolojimiz hakkında bilgi edinmek için SSS sayfası adresini ziyaret edin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin