secureactivitysett726411[.]li
secureactivitysett726411.li için kimlik avı ve güvenlik kontrolü
“Sign in to your Microsoft account”
secureactivitysett726411.li — İçerik kullanılamıyor (HTTP 502). Marka kimliğine bürünme: Microsoft; Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 13/94 (ADMINUSLabs, alphaMountain.ai, CRDF, CyRadar, ESET); URLQuery 4 alerts; URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
PhishDestroy identifies the domain secureactivitysett726411.li as an active credential phishing site impersonating a legitimate activity portal. The domain leverages a deceptive naming convention to trick users into entering login credentials under the guise of a secure activity management system. Threat actors are likely using this domain in phishing campaigns, emails, or social engineering tactics to harvest sensitive user data.
Technical analysis of secureactivitysett726411.li reveals a low initial detection profile with 13/95 VirusTotal detections, suggesting it is either newly deployed or employing evasion techniques. The domain resolves to IP address 82.221.136.24 and utilizes a Let's Encrypt SSL certificate, which may enhance its credibility. Further investigation under seed 149107 is ongoing to determine registrar details, creation date, Google Safe Browsing (GSB) status, and inclusion on blocklists.
The domain remains active and under investigation as of current assessment. Users are advised to avoid interacting with secureactivitysett726411.li and report any related suspicious activity. Immediate blocking of IP 82.221.136.24 and domain-level blocking are recommended. While the current risk is under evaluation, the lack of detections and active status warrant heightened vigilance. Regular monitoring and proactive threat intelligence updates are essential to mitigate potential credential theft campaigns.
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| YARAhub by abuse.ch | secureactivitysett726411.li/ |
malware | Detects file containing Telegram Bot API |
| Cloudflare DNS | secureactivitysett726411.li |
malicious | Sinkholed |
| DigiCert UltraDNS | secureactivitysett726411.li |
malicious | Sinkholed |
| DNS4EU | secureactivitysett726411.li |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
Teknolojiler · 2 identified
HTTP/3 is the third major version of the Hypertext Transfer Protocol used to exchange information on the World Wide Web.
httpwg.org %100 güvenVirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of secureactivitysett726411.li · checked Apr 25, 2026
Kanıtlar ve Dış Raporlar
PD-20260425-05A2A8 Recipient: abuse@orangewebsite.com Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin