usweb[.]02room[.]us
Kanıt özeti
This domain, usweb.02room.us, is identified as a credential harvesting phishing site designed to deceive users into submitting sensitive login credentials through fraudulent web portals. Analysis indicates the infrastructure is tailored to mimic legitimate authentication pages, likely targeting corporate, financial, or personal accounts. The domain employs social engineering tactics to exploit user trust, redirecting victims to cloned interfaces where credentials are captured in real time for unauthorized access or financial fraud. Infrastructure analysis reveals concrete indicators of malicious intent. The domain was registered on June 01, 2026, an unusually recent creation date that aligns with common phishing lifecycle patterns. It resolves to the IP address 172.86.91.195, which has been associated with prior phishing campaigns. Security vendors on VirusTotal flagged usweb.02room.us with a detection ratio of 16/95, confirming its classification as malicious by multiple threat intelligence sources. Additionally, the domain appears on one security blocklist and has since been taken offline, though residual risk remains for users who may have interacted with it before deactivation. Users who visited usweb.02room.us or entered credentials on any page hosted under this domain should take immediate corrective action. First, revoke any submitted passwords and enable multi-factor authentication on all associated accounts to prevent unauthorized access. Second, monitor linked accounts for suspicious activity, such as unrecognized logins or transactions. Third, scan local devices for malware using updated security tools, as phishing sites may deploy secondary payloads. If corporate credentials were exposed, report the incident to internal security teams to initiate containment protocols. Given the elevated risk level, affected users should assume compromise and act accordingly to mitigate potential damage.
Data Coverage
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 izlenen harici kaynak · kayıtlı anlık görüntü 11.08.2026
Etki Alanı Analizi
Teknik ayrıntılarDNS, TLS adları ve zaman damgaları
VirusTotal Analizi
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin