Güvenlik raporuna geç
⚠️
Bu alan adı, zararlı olarak işaretlenmiştir
Güvenlik motorları bir algılama bildiriyor: 7. Bir eşleşme bildiren genel engellenenler listeleri: 2. Çok dikkatli olun — kimlik bilgilerini veya kişisel bilgileri girmeyin.
Etki alanı güvenliği ve tehdit istihbaratı

thecoinb-se-lo-in[.]cc

“Suspected phishing site | Cloudflare”

Tehdit kararı Kritik 95/100 kanıt puanı
Kullanılabilirlik Sunucu hatası En son saklanan yanıt sonuçsuz kaldı
VirusTotal algılamaları: 7/93 Spamhaus DBL: DBL_PHISH Saklanan engelleme listesi eşleşmeleri: 2
02.03.2026 CDN
Rapor özeti

thecoinb-se-lo-in.cc — Sunucu hatası (HTTP 502). Kanıt özeti: VirusTotal 7/93 (ADMINUSLabs, alphaMountain.ai, Forcepoint ThreatSeeker, Fortinet, Google Safebrowsing); URLScan malicious verdict; Google Safe Browsing flagged; Spamhaus DBL_PHISH; 2 external blocklist matches (MetaMask, SEAL); PhishDestroy score 95/100. Kayıt kuruluşu: NiceNIC.

Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.

Kanıt özeti
KRİTİK
Ref
CC1E3F77
Puan
95/100

This domain is flagged as a high-risk generic phishing threat targeting cryptocurrency users. Analysis indicates the infrastructure is designed to harvest wallet credentials, private keys, or sensitive financial data through deceptive interfaces mimicking legitimate platforms. The threat type is classified as crypto-specific phishing, with active campaigns observed as of the latest verification (seed cc1e3f). Infrastructure analysis reveals the domain thecoinb-se-lo-in.cc was registered on March 02, 2026, through NiceNIC International Group Co., Limited. It resolves to IP address 172.67.148.12, hosted on AS13335 (Cloudflare, Inc.) in the United States. The domain is currently active and lacks an SSL certificate. Security vendor detections on VirusTotal report 7/95 engines flagging the domain as malicious. It appears on three security blocklists and is explicitly blocked by at least three specialized threat intelligence feeds. Google Safe Browsing categorizes this domain as phishing, and the page title displays a Cloudflare warning: 'Suspected phishing site.' Mitigation steps for this threat type include immediate blocking of the domain and its resolving IP (172.67.148.12) at the network perimeter. Organizations should deploy endpoint protection rules to prevent access to the domain and monitor for any internal systems attempting to resolve or communicate with it. Users who may have interacted with the domain should revoke any active sessions, rotate credentials, and verify wallet integrity through offline tools. Security teams are advised to check proxy and DNS logs for connections to thecoinb-se-lo-in.cc or the IP 172.67.148.12 dating back to the creation date (March 02, 2026). Additional scrutiny should be applied to any outbound traffic to Cloudflare-hosted IPs associated with newly registered domains.

VirusTotal
VirusTotal
7 det.
URLScan
URLScan
TLS sertifikası
E8
Yaş
6 mo
Gözlemlenen durum
Sunucu hatası 502
PhishDestroy
DestroyList
Listede
Veri kapsamı VirusTotal 7 / 93 URLQuery rapor saklandı — ayrıntılı karar bekleniyor PhishStats checked — no match recorded OTX no community references CF Radarı scan completed URLScan capture saklanan rapor URLScan verdict malicious DNS engellemeleri kontrol edilmedi TLS valid certificate, 85d WHOIS 6 mo old Ekran görüntüsü 2 captures · 2 sources Yönlendirme zinciri araştırılmadı
Ağ Güvenliği İstihbaratı Registrar context
Registrar context NiceNIC
Stored registration data identifies NICENIC INTERNATIONAL GROUP CO., LIMITED (IANA 3765) as the registrar. PhishDestroy maintains separate NiceNIC abuse-report research; registrar association is contextual and is not an independent detection for this domain.
NiceNIC Verdict Full Investigation

Tehdit Müdahale Pipeline

Keşif
Checks
Reports
Kullanılabilirlik
14/16

Genel Engelleme Listesi Durumu

Kaydedilen görüntü

Etki Alanı Analizi

Alan adı
URLScan Verdict Zararlı score 100 Phishing report ↗
Google Safe Browsing İşaretlendi Social engineering checked 02.03.2026
Sunucu / ASN cloudflare · AS13335 Cloudflare, Inc.
IP Context Cloudflare shared edge origin IP hidden Edge-IP itibarı bu etki alanıyla ilişkilendirilmez.
Kayıt kuruluşu NiceNIC RU(RU) PhishDestroy Investigation
IP adresi 172.67.148.12 CDN
Coğrafi konumUS San Francisco, US
AS13335 · Cloudflare, Inc.
Kaynak IP, bir CDN proxy'sinin arkasına gizlenir. Uç adresine ilişkin Ters IP sonuçları ilgisiz kiracılar içerir; Kaynağı bulmak için pasif DNS veya sertifika şeffaflığı verileri gerekir.
KayıtOluşturuldu 02.03.2026 (169d)
HTTP Durumu502 Error
Elapsed Since First Report 122 days
Neyi ölçüyoruz Raw elapsed time since the first stored abuse report. It is not a registrar response-time measurement. Latest observed status: Sunucu hatası.
Her raporun içeriği Saklanan giden rapor kayıtları, satıcı kararları, kayıt verileri, barındırma ayrıntıları, sınıflandırmalar veya ekran görüntüleri gibi o sırada mevcut olan kanıtlara referans verebilir. Bu sayfa, teslim edilen yükün, alındığının, onaylandığının veya alıcının yaptığı eylemin tam olarak ne olduğu konusunda bir sonuç çıkarmaz.
Teknik ayrıntılarDNS, SSL SAN’ları, zaman damgaları
İlk Kez Tespit Edildi02.03.2026
DOM Analysisanalyzed 10.04.2026score 95/100
IoC Extractionscanned 01.08.20260 wallet · 0 Telegram IoCs
Submitted URLhttp://thecoinb-se-lo-in.cc/
Ad sunucularıaiden.ns.cloudflare.comnucum.ns.cloudflare.com
TLS Observationscanned 15.03.2026
Sayfa başlığı
Suspected phishing site | Cloudflare
TLS sertifikası
Valid transport encryption · Düzenleyen E8 · valid for 85 days

Latest Classified Outcome 2026-08-19 03:27:45 UTC

Primary outcome Registration hold observed reason: Registrar clientHold 95% confidence
Attribution NICENIC INTERNATIONAL GROUP CO., LIMITED mechanism: Registrar clientHold source: Rdap Status Collector
Evidence layers Availability: DNS inactive Content: Unreachable DNS: NXDOMAIN Registration: Registrar clientHold
Latest HTTP observation Bilinmiyor Origin unreachable Http 5xx 20% 2026-08-19 02:34:33 UTC
RDAP registration Registrar clientHold NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 RDAP HTTP 200 source: Rdap Status Collector clientDeleteProhibitedclientHoldclientTransferProhibited expires 2027-02-25 15:47:35 UTC checked 2026-08-19 03:27:45 UTC
Registrar action marker verified clientHold marker NICENIC INTERNATIONAL GROUP CO., LIMITED · IANA 3765 causal link to our report not established
Observed timeline last reachable: 2026-07-05 16:18:18 UTC current episode first observed: 2026-08-05 01:45:38 UTC observed RIP window: 2026-07-05 16:18:18 UTC → 2026-08-05 01:45:38 UTC · 729.46h midpoint estimate ≈ 2026-07-20 21:01:58 UTC · precision very low · basis bounded
Availability, content, DNS and registration are independent evidence layers. NXDOMAIN, an unreachable origin or missing content alone does not prove registrar action. A registrar or provider is credited only when a direct technical marker identifies that actor. Report causality is shown separately.

Adli İstihbarat

External Scripts 1
https://performance.radar.cloudflare.com/beacon.js
Bu Alan Adını Bildir Kanıt sunun ve başkalarını korumaya yardımcı olun

VirusTotal Analizi

7 / 93 güvenlik sağlayıcıları bu alanı işaretledi
View on VT
Last analyzed
ADMINUSLabs
alphaMountain.ai
Forcepoint ThreatSeeker
Fortinet
Google Safebrowsing
Lionic
SOCRadar
Site Performans Analizi

Google PageSpeed Insights — mobile performance audit of thecoinb-se-lo-in.cc · checked Mar 2, 2026

100
Good
Performance
FCP
0.77s
First Contentful Paint
LCP
1.82s
Largest Contentful Paint
CLS
0.018
Cumulative Layout Shift
TBT
0ms
Total Blocking Time
SI
0.78s
Speed Index
Powered by Google PageSpeed Insights · Mobile strategy · Scores: 90-100 Good 50-89 Needs Work 0-49 Poor

Kanıtlar ve Dış Raporlar

Bu Siteden Etkilendiniz mi?

If credentials were compromised, report immediately. Do not engage with recovery scammers.

Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.

Europol
AB ülkeniz için resmi raporlama kanalını bulun
National police directory
Kurtarma dolandırıcılarına dikkat edin! Suçlular, araştırmacı, avukat veya kurtarma görevlisi gibi davranarak mağdurlarla tekrar iletişime geçebilir. Peşin ücret ödemeyin veya kimlik bilgilerinizi paylaşmayın. Geri ödeme dolandırıcılığı hakkında daha fazla bilgi edinin →

Yerel Yetkililere Bildirin

resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.

97 ülke rehberi
Yapay zeka destekli taslak — olay ayrıntıları yapay zeka sağlayıcısı tarafından işlenir Kendiniz inceleyin ve gönderin

Herhangi Bir Alan Adını Kontrol Et

Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi

Şimdi Tara

Oltalama Olayını Bildir

Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun

Bildir

Canlı Tehdit Akışı

Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri

İzle

Gelişmelerden Haberdar Olun, Güvende Kalın

Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin

Canlı Tehdit Akışı Bu İlanı İtiraz Et
HTML · IFRAME

Bu Raporu Yerleştir

Bu tehdit bilgisini web sitenizde veya blogunuzda paylaşın

embed.html
<iframe
  src="https://phishdestroy.io/tr/embed/domain/thecoinb-se-lo-in.cc"
  title="PhishDestroy threat report for thecoinb-se-lo-in.cc"
  width="100%" height="320"
  loading="lazy"
  referrerpolicy="no-referrer"
  sandbox="allow-same-origin allow-popups allow-popups-to-escape-sandbox"
  style="border:0;border-radius:12px;max-width:100%"
></iframe>