shopee0109[.]blogspot[.]com
“shopee”
Kanıt özeti
This domain is flagged as a generic phishing site with an elevated risk classification. Analysis indicates the infrastructure is specifically designed to mimic legitimate e-commerce login portals, targeting users with credential harvesting techniques. The page title 'shopee' directly corresponds to a well-known online marketplace, suggesting an intent to deceive users into submitting sensitive account information. Infrastructure analysis reveals the domain shopee0109.blogspot.com was registered through Google Blogger on March 27, 2026, and resolves to the IP address 142.251.110.132, located within Google LLC's network in the United States. The SSL certificate is issued by Google Trust Services under the WE2 root. Detection metrics show 18 out of 95 security vendors on a major scanning platform flag the domain as malicious, while one security blocklist (PhishDestroy) has already classified it as a phishing threat. The domain currently maintains an offline status following takedown procedures. Mitigation against this specific threat type requires immediate user awareness and technical controls. Users should verify domain authenticity before entering credentials, particularly on platforms hosted by free blog services. Organizations should implement DNS filtering to block known malicious subdomains on blogspot.com and enforce multi-factor authentication to mitigate credential theft risks. Security teams are advised to monitor network traffic for connections to 142.251.110.132 and similar IP ranges associated with this campaign, while reviewing logs for any interaction with the now-offline phishing page.
Data Coverage
Ağ Güvenliği İstihbaratı
| Detection System | Indicator | Verdict | Alert |
|---|---|---|---|
| Cloudflare DNS | shopee0109.blogspot.com |
malicious | Sinkholed |
| DNS4EU | shopee0109.blogspot.com |
malicious | Sinkholed |
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin