verification-auth-login[.]surge[.]sh
“Accès à votre caisse régionale - Crédit Agricole”
verification-auth-login.surge.sh — İçerik kullanılamıyor. Marka kimliğine bürünme: Credit Agricole; Dolandırıcılık türü: Credential Phishing. Kanıt özeti: VirusTotal 15/95 (alphaMountain.ai, BitDefender, Chong Lua Dao, CyRadar, ESET); URLScan malicious verdict; CF Radar malicious; PhishDestroy score 95/100. Kayıt kuruluşu: Surge.sh.
Özgün adli kaydı korumak için aşağıdaki ayrıntılı PhishDestroy AI analizi İngilizce bırakılmıştır.
The domain verification-auth-login.surge.sh has been assessed as an elevated risk for brand impersonation. This domain was designed to mimic the official Credit Agricole login page, potentially to deceive users into providing sensitive information. The impersonation is evident from the page title 'Accès à votre caisse régionale - Crédit Agricole,' which closely resembles the legitimate Credit Agricole login page.
Analysis indicates that the domain verification-auth-login.surge.sh has been flagged by 15 out of 95 security vendors on VirusTotal, suggesting a moderate level of detection. The domain is registered through Surge.sh, a popular platform for hosting web pages, which can be used for both legitimate and malicious purposes. The IP address 138.68.112.220, associated with the domain, is located in Germany and belongs to the AS14061 DigitalOcean, LLC network. The domain appears on two security blocklists, PhishDestroy and PhishingDB, further reinforcing its malicious nature. The SSL certificate is issued by Sectigo Limited, a trusted certificate authority, which might add a layer of credibility to the fraudulent site. The domain has been taken offline, but the potential damage to users who accessed it before it was shut down remains a concern.
To mitigate the risks associated with brand impersonation, users should be educated to verify the URL of the website they are accessing, ensuring it matches the official Credit Agricole domain. Additionally, security teams should monitor for similar domain registrations and IP addresses to identify and block any related malicious activities. Implementing multi-factor authentication (MFA) can also help prevent unauthorized access even if credentials are compromised. Organizations should also consider using domain monitoring services to detect and respond to such threats more quickly.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Genel Engelleme Listesi Durumu
VirusTotal Analizi
Arşivlenmiş Kanıtlar
Kanıtlar ve Dış Raporlar
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin